Cert Party

An Emergency Reponse Team Faster Than Superman Himself

[0x1] Search for a Pid without using ps and grep

[0x2] A C Based Open Source Web Application Firewall (WAF) for LAMP

[0x3] Log Tailer

[0x4] Bruteforcing on GPU's

[0x5] a dirty hack for converting a string to hex to little endian representation

[0x6] India's $35 Tablet- The Everything Killer

[0x7] Bluekaizen

[0x8] Social Engineering for fun, profit and a whacking

[0x9] Password disclosure vulnerability in GNOME Display Manager (gdm)

[0xA] Wireless penetration test went good

An Expert's Guide to Database Solutions

Experienced DBA, Strategist, Architect, and Performance Expert James Koopmann provides information, guidance, technical savvy, and solutions for your database needs.

[0x1] oerr and beyond

[0x2] Are you happy with Oracle's recent mergers and acquisitions? - Part II

[0x3] Are you happy with Oracle's recent mergers and acquisitions?

[0x4] Have we forgotten about the Unix sar utility to help find database performance problems?

[0x5] Oracle 11g Software Installation on Linux-CentOS-5.5 on Oracle VM VirtualBox 3.2.4

[0x6] UKOUG Conference Series; Calling Database Experts to Submit Abstracts

[0x7] Oracle's ADRCI - part9

[0x8] Oracle's ADRCI - part8

[0x9] Oracle's ADRCI - part7

[0xA] Oracle's ADRCI - part6

TechBU

Latest technology, Social media news and computing tips

[0x1] Do more with Gmail-Make phone calls!!

[0x2] Google Adsense – Made easy

[0x3] A Complete Guide on Getting Your Blog Indexed by Google within 24 Hours

[0x4] Broad Band Error Codes and Solution

[0x5] Muro- The HTML5 based online drawing tool from deviantart

[0x6] 7 super tools to secure your mobile phone secure

[0x7] Gaining Large Traffic From Social Media Like Digg And Stumble

[0x8] 20 Awesome Gmail Lab Features You Should Try !!

[0x9] Importance of Social Media in Blogging!!

[0xA] Epic, the first browser by Indians : a review

CSO Blogs - Career

[0x1] AQAP - A Brief Overview of 'Inspire'

[0x2] Caveat Emptor - Why the Cloud is Still a High Risk Option

[0x3] Cybersecurity Governance: State CISO Roles - Past, Present and Future

[0x4] New Usama Bin Laden MP3 released -

[0x5] Vulnerability disclosure revisited, and revisited, and revisited, ...

[0x6] Jihadi's Continue to Crack Software

[0x7] Compliance Management Challenges - Incomplete Coverage

[0x8] National Moment of Rememberance & The Lion of Fallujah

[0x9] Some Common Emergency Management Terms – Concepts

[0xA] Continuous Monitoring and Reporting - NASA's Jerry Davis

Optimal Security

the Lumension Blog

[0x1] Ben Franklin’s Endpoint Security Advice

[0x2] Does ‘Death of the Web’ Mean a More Secure Internet?

[0x3] Employees Will Steal Your Data – Are You Protecting the Right Stuff?

[0x4] Thoughts On Intel’s Acquisition of McAfee

[0x5] August 2010 Patch Tuesday Security Briefing

[0x6] Largest Patch Tuesday on Record

[0x7] Afraid of Change: Getting Users to Upgrade from XP to Win7

[0x8] Microsoft Prepares Out Of Band Patch For “Globe Trotting” LNK File Issue

[0x9] Adjust Your Defenses to the Changing Threat Vector

[0xA] Yes Virginia, Mac’s Can Get Viruses

Firewall Wizards

Tips and tricks for firewall administrators

[0x1] Re: In search of Firewalls KPIs

[0x2] Online Binary Planting Exposure Test

[0x3] Re: UPnP part of attack surface

[0x4] UPnP part of attack surface

[0x5] Re: In search of Firewalls KPIs

[0x6] Re: a cutting-edge open-source network security project

[0x7] Re: covert timing channel data

[0x8] Re: covert timing channel data

[0x9] Ruxcon 2010 Final Call For Papers

[0xA] In search of Firewalls KPIs

Zero Day Blog RSS | ZDNet

[0x1] Barbers and security professionals

[0x2] Google Chrome celebrates 2nd birthday with security patches

[0x3] Apple patches 13 iTunes security holes

[0x4] Malware hosted on Google Code project site

[0x5] Microsoft ships 'Fix-It' for DLL load hijacking attack vector

[0x6] RealPlayer haunted by 'critical' security holes

[0x7] Verizon DBIR challenge clue #4

[0x8] Critical security holes in Adobe Shockwave

[0x9] Apple patches 13 Mac OS X vulnerabilities

[0xA] ATM makers patch Black Hat cash-dispensing flaw

Rapid7 Network Security Blog

Vulnerability Management

[0x1] Application DLL Load Hijacking

[0x2] Metasploit Express crucial to win in South Florida ISSA Hack the Flag

[0x3] August Patch Tuesday Roundup

[0x4] Black Hat Race To Root Results

[0x5] MS10-046: A rude awakening

[0x6] New VxWorks Vulnerabilities

[0x7] Better is not good enough

[0x8] Cheer and Pwning in Las Vegas

[0x9] Metasploit Express v3.4.1 Released!

[0xA] July Patch Tuesday Roundup

CIO Security

Latest Security issues from CIO UK

[0x1] SABMiller to launch analyst forecast technology

[0x2] Metropolitan Police renew payroll outsourcing with Logica

[0x3] Royal Bank of Scotland to cut 3,500 staff

[0x4] Women better at keeping corporate secrets

[0x5] HP, 3Par sign merger agreement

[0x6] Is your acceptable use policy social media-proof?

[0x7] Wikileaks move servers to nuclear bunker under Stockholm

[0x8] Salesforce.com rolls out contact-data service

[0x9] BCS Council opens elections

[0xA] ARM shares soar to all-time high on take over rumour

Delicious/kungfuhacker

bookmarks posted by kungfuhacker

[0x1] Pssst...Want To Rent A Botnet?

[0x2] iPhone Security Flaw – Using a PIN Won’t Protect Your Data

[0x3] Protecting Admin Passwords During Remote Response and Forensics

[0x4] Michal drops the other shoe

[0x5] Zone-H Defacement Statistics Report for Q1 2010

[0x6] The Dark Side of Phone Apps

[0x7] Pwning Embedded ADSL Routers

[0x8] Commoditising Specialist Penetration Testing Services – To Whose Benefit?

[0x9] Week 22 in Review – 2010

[0xA] Zero-day exploit for Adobe Reader, Flash now in the wild

StatCounter Blog

[0x1] Upgrades Just Got Better

[0x2] StatCounter: Blocking Your Own Visits

[0x3] Facelift – Beta Testing in progress

[0x4] A Facelift for StatCounter!

[0x5] SC4 and Beyond…!

[0x6] Happy St Patrick’s Day!

[0x7] StatCounter – SC4 Conversion

[0x8] No Referring Link – Explained

[0x9] Season’s Greetings

[0xA] Unique Visitors – YOUR Questions Answered

Security University 2010 Class Schedule

2010 Security University Classes

[0x1] CISSP® Prep/The Official SU CISSP® Prep Class

[0x2] Q/EH® Qualified/ Ethical Hacker Class - Enroll Now!

[0x3] Q/SA® Qualified/ Security Analyst Penetration Tester Certification w/ Q/PTL® License - Enroll Now!

[0x4] Q/FE® Qualified/ Forensic Expert - Enroll Now!

[0x5] Q/ND® Qualified/ Network Defender - Enroll Now!

[0x6] Q/NSP® Qualified/ Network Security Policy Admin and SOA Security Oriented Architect - Enroll Now!

[0x7] Q/AAP® Qualified Access, Authentication and PKI Professional - Enroll Now!

[0x8] CWNA™/CWSP™ Boot Camp - Enroll Now!

[0x9] Q/WAD® Qualified/ Wireless Analyst and Defender - Enroll Now!

[0xA] Q/SSE® Qualified/ Software Security Expert Cert. - Enroll Now!

Information Security Thoughts - Allen Baranov

A blog dedicated to thoughts about Information Security.

[0x1] Information Classification Like Creative Commons [Part 2]

[0x2] Quick Thought: Information Classification Like Creative Commons

[0x3] [OT] Cutest Vuvuzela Player Ever?

[0x4] I'm Cool Like That...

[0x5] I am a hacker - whether I like it or not

[0x6] Back.

[0x7] I stand by Gears!

[0x8] The most important piece of software this decade

[0x9] SANS Confirms

[0xA] If you only read one article on Information Security...

Security Weekly by Computerworld

Security Weekly by Computerworld

[0x1] Microsoft upgrades free app security tool

[0x2] Investigators find famous DJ's credit card details for sale

[0x3] Nigerian advance-fee scammer gets 12 years

[0x4] Sydney Water IT security manager talks governance strategy

[0x5] To boost security, Facebook adds remote logout

[0x6] Computerworld Live Webinar: Social Media in the Workplace

[0x7] Check Point bolsters VMware security

[0x8] Freeview claims quashed as Nine 3D report issued to ACMA

[0x9] Wikileaks illustrates need for Information Ombudsman: ex-CIA Robert Baer

[0xA] Think like a criminal, but talk like an executive

ITtoolbox Downloads

[0x1] Using WebSphere DataStage with IBM DataMirror Change Data Capture

[0x2] Extend and Reuse Existing Mainframe Functions Through SOA - Part 4 of the Roadmap To Reduce Webcast Series

[0x3] Consolidate Applications From Non-Strategic Platforms Onto z/OS - Part 3 of the Roadmap To Reduce Webcast Series

[0x4] Tech Talk:: Strategic Solutions To Help Solve Top Issues In The Data Center Today

[0x5] How Safe Is Your Network? - Analyst #1 Choice for Vulnerability Management - Free Trial

[0x6] Always be Open for Business

[0x7] Make Compliance Work for You

[0x8] Reduce Operational Costs By Up To 95% - Part 1 of the Roadmap To Reduce Webcast Series

[0x9] Increase productivity by up to 40% - Part 2 of the Roadmap To Reduce Webcast Series

[0xA] Database Trends and Applications Survey Results: The Freshest BI Data from the Journal of Enterprise Data Management

SecGeeks - information security, social security, vulnerabilities, exploits, whitepapers, tools,security links - Stay Aware, Stay Secure!!

[0x1] How to Reset Windows Password with Windows Password Unlocker Standard?

[0x2] Barbers and security professionals

[0x3] Intel buys security software firm McAfee for $7.68B

[0x4] Barbers and security professionals

[0x5] Verizon DBIR challenge clue #4

[0x6] Malware hosted on Google Code project site

[0x7] Verizon DBIR challenge clue #4

[0x8] Verizon DBIR challenge clue #4

[0x9] Verizon DBIR challenge clue #4

[0xA] Google pays $10,000 to fix 10 high-risk Chrome flaws

The Hacker Diaries

Ethical Hacking, Security Tools, and all things Cyber Security

[0x1] Best Offensive Security Tools Survey 2010

[0x2] Inside the Mind of a Hacker

[0x3] Hacktivists change the Global Warming Debate

[0x4] Protecting from Identity Theft? A good Start

[0x5] Social Security number code cracked, study claims

[0x6] Pink Floyd star David Gilmour joins fight to halt extradition to US of hacker Gary McKinnon

[0x7] The Myth of the Virus Free Mac

[0x8] Hackers launch phishing attack on Facebook users

[0x9] Social Networking making it easier for Hackers

[0xA] Twitter’s porn name game a hit with Hackers

Edible Apple

Apple News, Rumors, and Analysis

[0x1] Ping attracts over 1 million users in first 48 hours

[0x2] Steve Jobs defends the new iTunes 10 logo

[0x3] Google hoping to launch music streaming service by Christmas - Report

[0x4] Apple posts online preview of iOS 4.2

[0x5] Official Twitter app for the iPad is now available for download

[0x6] 10 things worth knowing about Ping

[0x7] The curious UI of iTunes 10

[0x8] Apple’s latest iPod Touch inches closer to the iPhone 4

[0x9] New iPod Nano Commercial - A new way to Nano

[0xA] Latest iPod Touch commercial - All kinds of fun

Packet Storm Security Advisories

Packet Storm Last 10 Advisories

[0x1] ie8-forcedtweet.txt

[0x2] moaub03-trendmicro.pdf

[0x3] moaub03-visinia.pdf

[0x4] googlechrome-corruption.txt

[0x5] dsa-2102-1.txt

[0x6] HPSBMA02572-SSRT100082.txt

[0x7] MDVSA-2010-170.txt

[0x8] glsa-201009-01.txt

[0x9] moaub02-apple.pdf

[0xA] USN-982-1.txt

Penetration Testing

While this list is intended for "professionals", participants frequenly disclose techniques and strategies that would be useful to anyone with a practical interest in security and network auditing.

[0x1] IBWAS10

[0x2] Re: Pentestn ASP website with tinymce

[0x3] Re: Pentestn ASP website with tinymce

[0x4] Pentest Criteria

[0x5] Re: WAF Testing..suggestions??

[0x6] Re: WAF Testing..suggestions??

[0x7] Re: Pentestn ASP website with tinymce

[0x8] nullcon Goa dwitiya (2.0) Call For Papers

[0x9] Re: Pentestn ASP website with tinymce

[0xA] Pentestn ASP website with tinymce

The Ethical Hacker Network RSS News Feed

Most Recent Additions to The Ethical Hacker Network, the best, single source of educational content for forensics, pen testing and incident response. Hacker Challenges with prizes, free monthly giveaways, tutorials, articles, forums, certification info and more.

[0x1] Maltego 3: First Look

[0x2] July 2010 Free Giveaway Winner - SANS vLive

[0x3] Review: SANS FOR610 Reverse Engineering Malware

[0x4] Book Review: The Art of Assembly Language 2nd Ed

[0x5] June 2010 Free Giveaway Winner - Black Hat USA

[0x6] Interview: Lenny Zeltser of Savvis and SANS Institute

[0x7] The Guide to Neuroscience for Social Engineers

[0x8] May 2010 Free Giveaway Winners - eLearnSecurity

[0x9] April 2010 Free Giveaway Winners - CBT Nuggets

[0xA] Tutorial: SEH Based Exploits and the Development Process

CSOONLINE.com - Security Career/Staffing

[0x1] Put down the pink stickies to improve your career

[0x2] SANS Boston 2010: Never too old to learn

[0x3] Former PA CISO: National cybersecurity bill won't work

[0x4] Security Careers: Responding to questions successfully

[0x5] Security Careers: The Mic is Always On. Always.

[0x6] Cultivating a healthy addiction for career success

[0x7] How young upstarts can get their big security break in 6 steps

[0x8] Measuring the health of corporate security

[0x9] Are You Making a Security Career or Working a Job?

[0xA] Sometimes, You Should Just Keep Quiet

GovInfoSecurity.com RSS Syndication

GovInfoSecurity.com RSS News Feeds on government information security news, regulations, and education.

[0x1] State CISOs: Tough Challenge to Secure Data

[0x2] Heartland, Discover Settle for $5 Million

[0x3] How to Protect Consumers from ID Theft

[0x4] HR 5136: National Defense Authorization Act for Fiscal Year 2011

[0x5] S. 3454: National Defense Authorization Act for Fiscal Year 2011

[0x6] NIST IR 7559: Forensic Web Services

[0x7] GAO: Federal Guidance Needed to Address Control Issues with Implementing Cloud Computing

[0x8] Protecting CUI: Federal Best Practices for Email Security, Archiving and Data Loss Prevention

[0x9] GovInfoSecurity.com Week In Review for Friday, Sept. 3, 2010

[0xA] Editor's Choice for August: Senate Tackles Cybersecurity Bill, DoD Infosec Strategy, U.S.-CERT, State CISOs

US-CERT Technical Cyber Security Alerts

US-CERT Technical Cyber Security Alerts provide timely information about current security issues, vulnerabilities, and exploits.

[0x1] TA10-238A: Microsoft Windows Insecurely Loads Dynamic Libraries

[0x2] TA10-231A: Adobe Reader and Acrobat Vulnerabilities

[0x3] TA10-223A: Adobe Flash and AIR Vulnerabilities

[0x4] TA10-222A: Microsoft Updates for Multiple Vulnerabilities

[0x5] TA10-194B: Oracle Updates for Multiple Vulnerabilities

[0x6] TA10-194A: Microsoft Updates for Multiple Vulnerabilities

[0x7] TA10-162A: Adobe Flash and AIR Vulnerabilities

[0x8] TA10-159B: Microsoft Updates for Multiple Vulnerabilities

[0x9] TA10-159A: Adobe Flash, Reader, and Acrobat Vulnerability

[0xA] TA10-131A: Microsoft Updates for Multiple Vulnerabilities

Reuters: Top News

Reuters.com is your source for breaking news, business, financial and investing news, including personal finance and stocks. Reuters is the leading global provider of news, financial information and technology solutions to the world's media, financial institutions, businesses and individuals.

[0x1] Emergency declared as 7.1 quake hits New Zealand

[0x2] Taxpayers likely to face initial loss on GM IPO: sources

[0x3] Obama to address new economic ideas next Wednesday

[0x4] U.S. and Israel spying behind BlackBerry woe: Dubai police

[0x5] Earl weakens to storm

[0x6] Bomb kills 54 in Pakistan, Taliban threatens U.S.

[0x7] Government says no leaking oil at Mariner platform

[0x8] Google faces Texas AG inquiry, settles privacy suit

[0x9] Madoff investors win $12.74 mln in Merkin case

[0xA] BP replaces failed blowout preventer on Gulf well

CSOONLINE.com - Video Surveillance

[0x1] Security at the Little League World Series

[0x2] Security blunders 'dumber than dog snot'

[0x3] What it's like to be grilled by the Secret Service

[0x4] Enterprise risk management: all systems go

[0x5] Covert Investigations 2: Video Recording Devices

[0x6] Spy tools: What private investigators use to sleuth

[0x7] A private investigator's tricks of the trade

[0x8] Hoover Dam Security in Pictures

[0x9] How 9-11 Shaped Hoover Dam Security Operations

[0xA] Taking the 'Closed' Out of CCTV

My Security Planet

My Security Planet

[0x1] Schneier on Security: Friday Squid Blogging: Squid Car

[0x2] ha.ckers.org web application security lab: The Perils of Speeding up the Browser

[0x3] ha.ckers.org web application security lab: Browser Differences, Minutia Et Al…

[0x4] terminal23: writing compensating controls

[0x5] Jeremiah Grossman: Our infrastructure -- Assessing Over 2,000 websites

[0x6] deep inside | security & tools: WASC Threat Classification 2 - Wordle

[0x7] Schneier on Security: UAE Man-in-the-Middle Attack Against SSL

[0x8] terminal23: incomplete thoughts: dreamy aspects of a solid security posture

[0x9] terminal23: incomplete thoughts: 5 of my security pet peeves

[0xA] terminal23: incomplete: a better representation of risk and compliance

Security Watch

Security Watch is a resource center for everything related to tech security: the latest news, review summaries and advice on security-related topics. We show you how you can protect your online identity and keep your computer safe.

[0x1] Apple Forgot to Filter Spam On New Ping Service

[0x2] Are You Happy With Your Antivirus?

[0x3] iTunes 10 Adds TV Rentals, Security Fixes

[0x4] Snoop Dogg Says "Hack is Wack!"

[0x5] Microsoft Updates DLL Advisory, Adds "Fix It" Tool

[0x6] The Most Dangerous Places to Surf

[0x7] HP Scanners With Webscan Expose Documents

[0x8] Image Backup—The Best Anti-Malware Protection There Is

[0x9] Facebook Clickjacking Attack Strikes Home

[0xA] Ten Fallacies About Web Privacy

ITILSec.com - Collaborative Security - Published news

[0x1] Health Insurance Quotes

[0x2] Fort Bonifacio Condominiums

[0x3] Sell Online

[0x4] Gas Furnace

[0x5] Get Your Ex Back

[0x6] How to Get Your Ex Back

[0x7] Стиральные Машины

[0x8] Телевизоры

[0x9] Холодильники

[0xA] Пылесосы

Network World on Spam

The latest spam and anti-spam news and analysis from NetworkWorld.com

[0x1] Ping a Scammers Haven? Security Experts Say Watch Out

[0x2] The Web's Most Annoying Apps

[0x3] Botnet takedown may yield valuable data

[0x4] Huge spamming botnet injured but still alive

[0x5] Security-as-a-service growing

[0x6] UK responsible for 4.5% of all global spam

[0x7] Malicious Spam Exploits Fake Celebrity Deaths

[0x8] Rustock botnet responsible for 40 percent of spam

[0x9] Google Patches Security Holes in Chrome Browser

[0xA] Proposing a secure global opt-out list

Latest Articles on Security

ZDNet UK's news and analysis for business leaders includes 7,093 articles on Security

[0x1] Microsofts updates Windows application protection tool

[0x2] RBS to axe 1,000 IT staff

[0x3] Twitter URL-shortener to keep track of all links clicked

[0x4] Quantum crypto detectors cracked by researchers

[0x5] India demands data from Google and Skype

[0x6] Orange Spain reveals phone numbers: researcher

[0x7] Orange Spain reveals user numbers, says researcher

[0x8] Orange Spain reveals user phone numbers, says researcher

[0x9] Old QuickTime code leaves IE open to attack

[0xA] RIM wins reprieve on India BlackBerry ban

Help Net Security - News

Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.

[0x1] Scammers using IM to deliver "IQ Test" spam

[0x2] Automated vs. manual security

[0x3] Facebook boosts security by adding remote logout feature

[0x4] Trojan attacks remain widespread

[0x5] Spammers attack Apple's Ping social network

[0x6] Labor Day phishing warning

[0x7] User's opinions on malware infections revealed

[0x8] Google Code hosting malware-spreading project

[0x9] Fake browser warnings lure victims to rogue AV solution

[0xA] Rescue of Chilean miners used as lure by banker Trojan

Security

[0x1] Secunia Tracks Down Missing Patches

[0x2] Pushdo May Have Taken Hit, But Spammers Stay Busy

[0x3] Microsoft Adds to Security Toolkit for Windows Apps

[0x4] Facebook Adds Remote Logout Feature

[0x5] Heartland Settles with Discover Card for $5 Million

[0x6] Researchers Hope Botnet Takedown Will Yield Valuable Data

[0x7] Researchers Launch 'Month of Bugs'

[0x8] Google Questions IBM's Bug Patching Report

[0x9] Scammers Trying to Cash in on TweetDeck Update

[0xA] Cisco Patches IOS Bug

CSOONLINE.com - Security Leadership

[0x1] Sticks and stones: Picking on users AND security pros

[0x2] Put down the pink stickies to improve your career

[0x3] SANS Boston 2010: Never too old to learn

[0x4] Brand protection and abuse: Keeping your company image safe on social media

[0x5] A striking disconnect between CSOs and hackers

[0x6] Security Careers: Responding to questions successfully

[0x7] 4 reasons why executives are the easiest social engineering targets

[0x8] State of the CSO 2010: Progress and peril

[0x9] Code Security: SAFECode report highlights best practices

[0xA] Debriefing: Security budget requests through the years

Free Network / Communications Magazines and Downloads from bestsecuritytips.tradepub.com

Free publications about networking and communication technologies and management.

[0x1] Build a Smarter IT Infrastructure for Your School

[0x2] Building a Smarter IT Infrastructure for Local Government

[0x3] MissionCritical Communications

[0x4] Mission Critical

[0x5] Successful Live Event Streaming

[0x6] Scaling Your Online Business

[0x7] Balancing the Quality and Cost of Online Video

[0x8] Maximise Content Delivery Performance

[0x9] Optimisez vos performances de diffusion de contenu

[0xA] Leistung bei der Bereitstellung von Multimedia-Inhalten maximieren

CSOONLINE.com - Fraud Prevention

[0x1] Scam preys on required TweetDeck update

[0x2] Scammers hit Twitter, Facebook with free IPad spam

[0x3] The essential retail security reader

[0x4] Report blames 'Avalanche' group for most phishing

[0x5] LinkedIn recommendations easy to hack

[0x6] 5 top tactics in retail theft today

[0x7] Financial fraud: How investigators work to combat data theft

[0x8] A private investigator's tricks of the trade

[0x9] Targeted Cyberattacks Test Enterprise Security Controls

[0xA] Facebook Takes Steps to Deal with Gift Card Scams

TippingPoint Upcoming Events

Upcoming conferences, tradeshows and Webcasts/podcasts where TippingPoint is participating.

[0x1] Orlando Tech-Security Conference - Thurs., December 17, 2009

[0x2] SANS CDI East 2009 - Monday, December 14, 2009

[0x3] Network World IT Roadmap San Francisco - Thurs., December 10, 2009

[0x4] Sacramento Tech-Security Conference - Thurs., December 10, 2009

[0x5] Atlanta Tech-Security Conference - Thurs., November 19, 2009

[0x6] Milwaukee Tech-Security Conference - Thurs., November 12, 2009

[0x7] Dallas SecureWorld Expo - November 4-5, 2009

[0x8] Educause 2009 (Booths #752, 754) - Nov. 3-5, 2009

[0x9] Seattle SecureWorld Expo - October 28-29, 2009

[0xA] Pittsburgh Tech-Security Conference - Thurs., November 5, 2009

got privacy?  Musings on the state of Privacy in a connected world. - Blog

Blog

[0x1] RESPONSIBILITY FOR PRIVACY VIOLATIONS IN USER GENERATED CONTENT PROVIDERS (GOOGLE CASE IN ITALY)

[0x2] THE UNITED STATES OF MEXICO’S PRIVACY LAW

[0x3] HB1149: Part II - Who needs to worry about HB1149? (or, Who's Who in the Zoo?)

[0x4] What does the Bavarian Lager case signify for Privacy?

[0x5] Analysis of the EC "Cookie Directive"

[0x6] Privacy implications of Bavarian Lager

[0x7] HB 1149: Did anyone involved in drafting this legislation actually read the PCI DSS?

[0x8] How to get the most bang from your Conference buck.

[0x9] Accessibility and Privacy. A Zero Sum Game?

[0xA] Safe Harbor...or Disaster?

cryptography on SWiK

[0x1] Mozilla CA Certificate Policy

[0x2] pkcs11-helper

[0x3] bouncycastle.org

[0x4] OpenSSL: The Open Source toolkit for SSL/TLS

[0x5] OSXCrypt.org - Truecrypt for MAC

[0x6] TrueCrypt - Free Open-Source On-The-Fly Disk Encryption Software for Windows 7/Vista/XP, Mac OS X and Linux

[0x7] Gpg4win - Secure E-Mail and File Encryption using GnuPG for Windows

[0x8] KeePass Password Safe

[0x9] Zfone Project Home Page

[0xA] Bitcoin - P2P Cryptocurrency

Donald R. Glass

Welcome to my weblog!

[0x1] Not all is lost yet! I do still exist and blog!

[0x2] What Tarot card are you? (irrelevant post)

[0x3] Trust

[0x4] Together Again

[0x5] No more SL wedding :-(

[0x6] I am a jealous person...well, I never said I was perfect

[0x7] Thought/ Quote of the week

[0x8] Heads up! July 21st is the day when Gemini and I will say our vows

[0x9] We have a new SL island, welcome to Gaea

[0xA] Thought/ Quote of the week

Packet Storm Security Exploits

Packet Storm Last 10 Exploits

[0x1] smbind-sql.txt

[0x2] pligg104-sql.txt

[0x3] moaub-visinia.txt

[0x4] moaub-trendmicro.txt

[0x5] onecms-xss.txt

[0x6] webmanagerpro-sql.txt

[0x7] PRL-2010-07.txt

[0x8] moovida-dllhijack.tgz

[0x9] moaub-quicktime.txt

[0xA] vbshout-rfilfi.txt

LinuxSecurity.com

The central voice for Linux and Open Source security news.

[0x1] Security program automatically tracks down missing patches

[0x2] Virtualize your browser to prevent drive-by malware attacks

[0x3] Compromising Twitter's OAuth security system

[0x4] Congratulations to the VOIP Forensic Challenge winners

[0x5] Networked Scanners Offer A Window Into The Enterprise, Researcher Says

[0x6] Malware hosted on Google Code project site

[0x7] SuSE: 2010-038: kernel

[0x8] Debian: 2102-1: barnowl: unchecked return value

[0x9] Pardus: 2010-120: Flashplugin: Multiple

[0xA] Pardus: 2010-119: OpenSSL: Use-after-free

Business:Security Articles from EzineArticles.com

EzineArticles.com is Trusted By Millions as The Source For Quality Original Articles

[0x1] Fire Alarm System Promotes Your Security - Ideas and Views

[0x2] Glossary of Counter Surveillance Terms

[0x3] Does Your Business Need Professional Shredding?

[0x4] Aviation Lights - Asset to Aircraft Warnings

[0x5] Tips For Finding A Trusted Locksmith

[0x6] Keeping Your Data Safe

[0x7] Designing Your CCTV Set Up

[0x8] How CCTV Prevents Crimes

[0x9] Choosing Digital Or Analogue

[0xA] Additional Benefits of CCTV

CSOONLINE.com - Pandemic Preparedness

[0x1] Lack of Telework Preparedness Puts Business Continuity in Danger?

[0x2] CDC Adopts Near Real-Time Flu Tracking System

[0x3] Gartner Joins GAO in Raising Flu Network Congestion Fears

[0x4] Most Businesses READY for Flu Pandemic?

[0x5] Swine Flu Near You? IPhone App Will Let You Know

[0x6] A Swine Flu (H1N1) Business Continuity Planning Guide

[0x7] Swine Flu: Watching the Southern Hemisphere for Signs of H1N1 Havoc

[0x8] WHO Declares Swine flu a Pandemic. Now What?

[0x9] Swine Flu: A Wake-up Call for Emergency Planners

[0xA] Swine Flu: Now That the Hype Is Over, Keep Planning

Packet Storm Security Miscellaneous Files

Packet Storm Last 10 Miscellaneous Files

[0x1] path-attacks.txt

[0x2] moaub02-rainbow.pdf

[0x3] checksum-shellcode.txt

[0x4] nullconGoa2011-CFP.txt

[0x5] advanced-xss.pdf

[0x6] rooted2011-cfp.txt

[0x7] Botan-1.8.10.tgz

[0x8] binary-english.pdf

[0x9] dhcp-attacker.pdf

[0xA] gcdc-elf.txt

Linux Exposed

The Linux Security and hacking Resource

[0x1] Using IPC -- pipes

[0x2] Hosted Exchange and Hosted Sharepoint

[0x3] Inspecting HTTP

[0x4] Windows Hacking and Windows Security Site

[0x5] Cracking WPA and WPA2 passwords

[0x6] Ilegal SEO techniques

[0x7] Torrents and SSH Tunnels

[0x8] Preventing Accidental Denial of Service

[0x9] Enhance Security with Port Knocking

[0xA] Analyzing Malicious SSH Login Attempts

Lenny Zeltser's Website

Lenny Zeltser's publications, research, and projects related to information security, risk management, business, and life in general.

[0x1] Comprehensive Review of SANS' Reverse-Engineering Malware Course

[0x2] Combating Malware in the Enterprise: New 2-Day Course Debuts at Half-Price

[0x3] Interview on SecuraBit Podcast

[0x4] REMnux: A Linux Distribution for Reverse-Engineering Malware

[0x5] Interview on on the Ethical Hacker Network

[0x6] Discussing Malicious Document Analysis at PaulDotCom Podcast

[0x7] Critical Log Review Checklist for Security Incidents

[0x8] 5 Steps to Building a Malware Analysis Toolkit Using Free Tools

[0x9] SANS Malware Course Now Covers Analysis of Malicious Documents and Memory Forensics

[0xA] Interview on InfoSec Daily Podcast

Unwired: Building & Maintaining Secure Wireless Networks

Journey into the latest in wireless technology! You'll find updates on new security issues and vulnerabilities, information on IEEE standards, advice on networking hardware, and unique insight on building and maintaining a secure wireless network.

[0x1] Quantum Cryptography

[0x2] In-Flight Wi-Fi

[0x3] Economic effects on IT Field

[0x4] Blackberry Storm Simulator

[0x5] 3G Wireless

[0x6] Wireless Network Users have Come a Long Way!

[0x7] Dilemma of a Passionate Programmer

[0x8] Can Old Wireless Network Interface Cards be Upgraded to Support WPA?

[0x9] Ramifications of a Cracked WPA Passphrase

[0xA] More Ramblings on WiFi Allergies

The RISKS Digest

The website of the RISKS mailing list

[0x1] Hot debate over Electronic Voting Machines

[0x2] Jeff Burbank: License to Steal

[0x3] BC Online Casino taken offline within hours

[0x4] Crooks Crack Check Image Sites, Steal $9 Million - The Consumerist

[0x5] iPhone jailbreak opens world of questions

[0x6] Muni gets time wrong; 510 drivers get a ticket

[0x7] No fail-safe linkage? 12-year-old paralyzed by ride

[0x8] Cutoff of YouTube in Siberia due to a single video

[0x9] Mac_OS_X_Mail_parental_controls_vulnerability

[0xA] Stalkers Exploit Cellphone GPS

SecureWorks Info Feed

SecureWorks news, press releases, events, and research alerts.

[0x1] News: Major Disruption of Pushdo Botnet Wasn't The Original Goal (Dark Reading)

[0x2] Event: Community Bankers Association of Oklahoma Annual Convention

[0x3] Announcement: Kevin Houle, Former Technical Manager at CERT, Joins SecureWorks

[0x4] Threat Analysis: Big Boss Check Counterfeiting Ring

[0x5] News: BlackHat's "JackPot" Of Bank Tech Scams (Bank Technology News)

[0x6] Event: Michigan Association of Community Banks Annual Convention

[0x7] Announcement: SecureWorks Cited as a Leader in Managed Security Services by Independent Research Firm

[0x8] Threat Analysis: ZeuS Banking Trojan Report

[0x9] News: Managed Security Service Providers: Cloudy Future (MSP Mentor)

[0xA] Event: Spokane Chapter of ISSA

Jeff Jones Security Blog

Looking at Security from All Angles. Security is not simple, so we should try not to simplify it to the point of uselessness.

[0x1] Scott Charney – Deconstructing Cyber Threat

[0x2] Nobody Attacks ! – Thinking About The Apache.org Attacks

[0x3] sPAM of the Day – Auditor Wants to Share $100M of Abandoned MOney!

[0x4] Miami-dade Inmates Hack the Phone System, Charge Calls to Strangers

[0x5] SDL Awareness and Adoption High Among Security Professionals

[0x6] Be Safer - Run as Standard User

[0x7] Computerworld: Apple delivers record monster security update

[0x8] Change Your Tweetdeck Account Password

[0x9] Profile of A Global Cybercrime Business – Innovative Marketing

[0xA] Woot! New Laptop

DojoSec

Security. Thought. Leadership.

[0x1] Interview with Dan Kaminsky at ShmooCon 2010

[0x2] Information Security and Starfish

[0x3] Jeremy Brown – From Static Analysis to 0day Exploit

[0x4] Mobile Communications Security Symposium

[0x5] Marcus’ Mailbag: Policy, Enforcement, and Monitoring

[0x6] Virtualization is Great for Forensics

[0x7] Google Hacking Renders Redaction Futile

[0x8] Metasponse Talk at Techno Forensics

[0x9] Cloud Computing and Sunburn

[0xA] Malwarebytes – An Effective Malware Removal Tool

OutScribe

All the tech that matters...

[0x1] Successful migration of my blog to WordPress

[0x2] Blog Under Maintenance – Update

[0x3] Best And Most Used Symbian Applications On My Mobile

[0x4] Google Strips Beta Tag from Gmail, Calendar, Docs and Talk, Salvages the World

[0x5] Protect Your Precious and Pricey Mobile From Theft

[0x6] Use your old mail accounts to use your LinkedIn connections optimally

[0x7] GPS Bluetooth Receiver and Data Logger – Visiontac VGPS-900

[0x8] Why Wolfram Alpha is not a Google Killer!

[0x9] Google Internet Bus is coming to Bengaluru!

[0xA] Now share your Google Latitude location with Gtalk buddies and on your blog!

GovInfoSecurity.com Webinars RSS Syndication

GovInfoSecurity.com RSS News Feeds on government information security webinars.

[0x1] Protecting CUI: Federal Best Practices for Email Security, Archiving and Data Loss Prevention

[0x2] The Reality of Cyberattacks: Emerging Solutions for Today's Threats

[0x3] Maintaining Secure Government Information Systems

[0x4] Managing Shared Passwords for Super-User Accounts

[0x5] U.S. Dept. of Justice on Emerging Threats: Lessons from TJX, Heartland, and Other Breaches

[0x6] Top 20 Critical Controls to Ensure Painless FISMA Compliance

[0x7] Practical User Authentication Strategies for Government Agencies

[0x8] Career Trends Survey 2010 Results Webinar

[0x9] The Identity Enabled Network: The Future of Secure Cyberspace

[0xA] Data Protection and Incident Response

CSOONLINE.com - Identity & Access

[0x1] Credit and debit card skimming: Look out for fraudulent readers at gas stations

[0x2] The 4 tiers of a secure B2B framework

[0x3] Data Mapping: Domesticating the Wild Rabbit

[0x4] Biometrics: What, Where and Why

[0x5] Free Lunch 2010: Why Public Algorithms Beat the Alternative

[0x6] Take a Walking Tour of Your Company's Security

[0x7] Groundhog Day: The Gartner IAM 2009 Event in Review

[0x8] Top Microsoft Security Architect: Windows 7 Will Slash Malware

[0x9] 6 Ways We Gave Up Our Privacy

[0xA] Where Defense in Depth Falls Short

BankInfoSecurity.com "Information Technology Risk Management" Blog RSS Syndication

BankInfoSecurity.com.com RSS Feeds for Information Technology Risk Management blog.

[0x1] An Open Letter to Heartland CEO Robert Carr

[0x2] Risk Management, Compliance and Industry Standards

[0x3] Events of 2008 and What They Have Taught Us

[0x4] The Rescue Plan: Bringing Confidence Back to the Credit Markets

[0x5] Economic Crisis: Who Do We Blame Next?

[0x6] Bank of Asia Experience Teaches us: Get Ahead of the News

[0x7] WaMu is NoMore!

[0x8] Picking up the Pieces from 'Bloody Monday'

[0x9] TJX Case Indictments: Lessons Learned

[0xA] Banking Crisis Hits Home with Community Institutions

Open Source Security

Discussion of security flaws, concepts, and practices in the Open Source community

[0x1] Re: CVE Request 1, NSS 2, Qt: Doesn't handle wildcards in Common Name properly

[0x2] Re: CVE Request 1, NSS 2, Qt: Doesn't handle wildcards in Common Name properly

[0x3] Re: CVE Request 1, NSS 2, Qt: Doesn't handle wildcards in Common Name properly

[0x4] CVE request: XSS in nusoap

[0x5] CVE Request 1, NSS 2, Qt: Doesn't handle wildcards in Common Name properly

[0x6] Re: CVE id request: libc fortify source information disclosure

[0x7] Re: CVE id request: libc fortify source information disclosure

[0x8] Re: CVE id request: libc fortify source information disclosure

[0x9] Re: CVE id request: libc fortify source information disclosure

[0xA] CVE-2010-2960 kernel: keyctl_session_to_parent null ptr deref

Securelist / Alerts

[0x1] Net-Worm.Win32.Kido

[0x2] Virus.Win32.Gpcode.ak

[0x3] Email-Worm.Win32.Warezov.nf

[0x4] Email-Worm.Win32.Warezov.mx

[0x5] Email-Worm.Win32.Warezov.ms

[0x6] Email-Worm.Win32.Zhelatin

[0x7] Email-Worm.Win32.Zhelatin.u

[0x8] Email-Worm.Win32.Zhelatin.r

[0x9] Email-Worm.Win32.Zhelatin.o

[0xA] Email-Worm.Win32.Warezov

CSOONLINE.com - Identity Management

[0x1] Two-factor authentication through Windows Server 2008 Net Policy Server

[0x2] Data Mapping: Domesticating the Wild Rabbit

[0x3] What Are the Most Overrated Security Technologies?

[0x4] Novell Target of Hedge Fund Takeover Bid

[0x5] Why REST Security Doesn't Exist (and what to do about it)

[0x6] Groundhog Day: The Gartner IAM 2009 Event in Review

[0x7] Hoover Dam Security in Pictures

[0x8] How 9-11 Shaped Hoover Dam Security Operations

[0x9] 6 Ways We Gave Up Our Privacy

[0xA] Social Networking a Tool for More Secure Identity Management? No Joke!

The Geek Stuff

Guides, HowTos and Tips for Technology Geeks

[0x1] How To Use Squid Proxy Cache Server To Control Internet Access

[0x2] Top 10 Open Source Bug Tracking System

[0x3] Linux cpio Examples: How to Create and Extract cpio Archives (and tar archives)

[0x4] Packet Analyzer: 15 TCPDUMP Command Examples

[0x5] How To Be Productive and Get Things Done Using GTD

[0x6] How to Send SMS Using Email to Major US Cellphone Carriers

[0x7] HBA WWN: How to Find Qlogic or Emulex HBA Card WWN Address on Linux

[0x8] Can You Make It? Compile C Programs on Linux Using Make Command

[0x9] UNIX / Linux: 2 Ways to Add Swap Space Using dd, mkswap and swapon

[0xA] 10 Things Any Monitoring Software Should Do (Nagios Does it)

InfoSecPodcast.com » Security Tools

Information Security related news, opinions and ramblings

[0x1] MIT Lincoln Lab Network Security Software

[0x2] Record IM video on the network?

[0x3] RFP for PenTesting

[0x4] Declassified window film stops wireless / cell signals

[0x5] List of Malware Analysis tool from SANS

[0x6] Malware Analyzing Sandbox

[0x7] Free Windows Honeypot from NetVigilance

[0x8] Ajax based port scanner

[0x9] Web based VMX file creator

[0xA] Bootable Linux security distros

Shellcode - Shell-storm.org

Last shellcodes

[0x1] Shellcode Checksum Routine

[0x2] execve(/bin/sh,NULL,0) - 31 bytes

[0x3] Linux Execute Command (MSF)

[0x4] execve(/bin/sh) - 24 byte

[0x5] XP SP3 English MessageBoxA - 87 bytes

[0x6] /bin/sh Null-Free Polymorphic - 46 bytes

[0x7] Get address of environnement variable

[0x8] Script JIT shellcode generator for DEP and ASLR bypass

[0x9] netcat connect back port 8080 - 76 bytes

[0xA] netcat bindshell port 8080 - 75 bytes

Securelist / Glossary

[0x1] Kaspersky Security Network (KSN)

[0x2] Toolkit

[0x3] ITW (In-the-Wild) samples

[0x4] Crimeware

[0x5] Keylogger

[0x6] World Wide Web

[0x7] WildList

[0x8] WiFi

[0x9] Whitelist

[0xA] Web browser

security_watchdog

All the IT security issues that affect you and your business. Direct reports from all the security conferences throughout the year, including RSA conference and Infosec.

[0x1] Google: complete privacy 'does not exist'

[0x2] Kiwi hacker to work for police

[0x3] Data leaks worst security threat

[0x4] UK businesses still don’t ‘get’ security

[0x5] Storm worm fabricates news

[0x6] Road warriors leaking secrets

[0x7] Cyber-crooks sting South Africa for £13m

[0x8] Public wants data breach legislation

[0x9] Hong Kong becomes most dangerous domain

[0xA] Scammers targeting LinkedIn

Wireless LAN Security Blog - AirTight Networks

[0x1] WPA2 Hole196 Webinar Q&A

[0x2] WPA2 finds itself in a “hole”! Vulnerable to insider attacks!

[0x3] One fine day in New Delhi

[0x4] Goodbye, WEP & TKIP

[0x5] Google or Apple, WiFi spares no one!

[0x6] Has your data been “Woogled”?!

[0x7] Wi-Fi Packet Capture Made Easy

[0x8] Wireless Forensics: A Review from RSA Conference 2010

[0x9] Interference combat guide for WiFi networks: Part 1

[0xA] AirTight satisfies PCI wireless scanning requirement in under 5 minutes

CERIAS Blog

[0x1] Centers of ... Adequacy, Revisited

[0x2] Own Your Own Space

[0x3] “Game Change” Request for comments

[0x4] Panel #3: The Evolution of Research Funding and Projects (Symposium Summary)

[0x5] CERIAS Seminar Presentation: David Bell (Symposium Summary)

[0x6] Morning Keynote Address: DHS Undersecretary Rand Beers (Symposium Summary)

[0x7] Fireside Chat (Symposium Summary)

[0x8] Panel #2: Infosec Ethics (Symposium Summary)

[0x9] Panel #1: Visualization of Security (Symposium Summary)

[0xA] Opening Keynote: Mike McConnell (Symposium Summary)

Xatrix Security Headlines

Latest Computer Security Headlines

[0x1] Hack Attack: Get Windows XP SP3 Through Windows Update

[0x2] TPB files charges against media companies

[0x3] Storm worm: again.

[0x4] Onslaught on .ORGs

[0x5] OpenOffice.org insecure

[0x6] Leave your laptop at home

[0x7] Hack in the Box – Capture the Flag

[0x8] 35% of pay-per-click fraud?

[0x9] New variant mobile worm

[0xA] Google will help users surf safely

Exotic Liability

Exotic Liability

[0x1] Exotic Liability 65: Screaming Pharaohs

[0x2] Exotic Liability 64: Ol' Grandpa

[0x3] Exotic Liability 63: Branded

[0x4] Exotic Liability 62: The Ropes

[0x5] Exotic Liability 61: Maltego 3

[0x6] Exotic Liability 60: Metamorphosis

[0x7] Exotic Liability 59: Infosec Slap Chop

[0x8] Exotic Liability 58: Nein Scheisse

[0x9] Exotic Liability 57: Historic Hard Dicks

[0xA] Exotic Liability 56: BBQ'd Bag-o-Dicks

Shon Harris' Amazon Blog

Shon Harris' Amazon Blog

[0x1] You don't need to meet any requirements to sit the exam - you can gain them as time goes on.

[0x2] Economical Uncertainities

[0x3] New Material on the CISSP Exam in 2009?

[0x4] Connecting with Shon Harris

[0x5] Part 5 of 5 - Having the Right Perspective on the World of Security

[0x6] Part 4 of 5 - Learning Security through the View of CISSP versus Reality

[0x7] Part 3 of 5 - Is It Really A Waste Of Time To Learn About The Wide Spectrum Of Topics Covering Security?

[0x8] Part 2 of 5 -Training For CISSP – The Early Days

[0x9] Busting through the Myths of the CISSP Exam

[0xA] What do CISSPs Really Know?

ZDI: Published Advisories

Published Advisories

[0x1] ZDI-10-169: Novell Netware SSHD.NLM Remote Code Execution Vulnerability

[0x2] ZDI-10-168: Apple QuickTime ActiveX _Marshaled_pUnk Remote Code Execution Vulnerability

[0x3] ZDI-10-167: RealNetworks RealPlayer FLV Parsing Multiple Integer Overflow Vulnerabilities

[0x4] ZDI-10-166: RealNetworks RealPlayer Malformed IVR Object Index Code Execution Vulnerability

[0x5] ZDI-10-165: Trend Micro Internet Security Pro 2010 ActiveX extSetOwner Remote Code Execution Vulnerability

[0x6] ZDI-10-164: Adobe Shockwave Player Director File FFFFFF88 Record Processing Remote Code Execution Vulnerability

[0x7] ZDI-10-163: Adobe Shockwave Director tSAC Chunk Parsing Remote Code Execution Vulnerability

[0x8] ZDI-10-162: Adobe Shockwave Director rcsL Chunk Remote Code Execution Vulnerability

[0x9] ZDI-10-161: Adobe Shockwave Director PAMI Chunk Remote Code Execution Vulnerability

[0xA] ZDI-10-160: Adobe Shockwave Player Director File FFFFFF45 Record Processing Remote Code Execution Vulnerability

AIRC Blog

AIRC Blog

[0x1] Flotilla clash and the social media war

[0x2] New Paypal phishing spam attack

[0x3] New MS IE6/IE7 zero-day vulnerability

[0x4] Hackers use a Facebook hoax to plant Rouge Antimalware

[0x5] Johnny Depp fake death notice - fake ActiveX codec

[0x6] Top 10 Chinese cyber attacks

[0x7] Out-of-band patch for the Aurora exploit will be released today by Microsoft

[0x8] Google vs. China - Round 1

[0x9] Hacking TLS

[0xA] Malware spreading via 'Facebook Password Reset Confirmation' email

The Falcon's View

Mental meanderings of an infosec obsessive...

[0x1] Approaching the Problem Backwards

[0x2] Cyber War and the Value of FUD

[0x3] Endpoint Security HIPS Flayed By NSS Labs

[0x4] A Stroll Down Amnesia Lane

[0x5] Password Complexity is Lame

[0x6] Of Antiquities and the Old Guard

[0x7] InfoSec Lessons from The Blind Side

[0x8] Dear People, Enough With the One-Time Code Tokens

[0x9] What's the deal with SCADA & Smart Grid?

[0xA] Speaking at ISSA International Conference

InfoSecPodcast.com

Information Security related news, opinions and ramblings

[0x1] Intel to acquire McAfee for $7.7 Billion

[0x2] Who’s going to Defcon?

[0x3] How-to on securing PDF documents

[0x4] Updating my feed location…thanks Google

[0x5] Most dangerous keywords to search for

[0x6] MIT Lincoln Lab Network Security Software

[0x7] 3 open InfoSec positions at MIT Lincoln Laboratory

[0x8] NAC Panel Discussion: What is the state of NAC?

[0x9] Record IM video on the network?

[0xA] WoW adds 2 factor authentication

HSC Security Portal

Hackers Center Security Portal is one of the most complete, updated and visited Securty portals on the net. We offer Security Blogs, Exploits, Texts, Tools

[0x1] Scrubyt 0.4

[0x2] Sahi V3

[0x3] UrlParams 2.2.0

[0x4] TemperIE

[0x5] Nikto 2

[0x6] hcraft 1.0.0

[0x7] MSNPawn 1.1

[0x8] httprint

[0x9] DIRB

[0xA] WebInject 1.4

AskApache Web Fire

.htaccess, Net Security, Server Tech, Web Development, Tutorials and Articles. Come through in something amazing.. blazing.

[0x1] Crazy POWERFUL Bash Prompt

[0x2] Questions I Ask Web Hosting Companies, Before Buying

[0x3] HOWTO: Uninstall CPANEL over SSH

[0x4] Real-Life Htaccess Files from My Server

[0x5] 30x Faster WP-Super Cache Site Speed

[0x6] Advanced WordPress wp-config.php Tweaks

[0x7] PortaPutty Auto-Reconnecting SSH Tunnels on an Encrypted TrueCrypt Portable USB Key w GPG

[0x8] Optimize a Website for Speed, Security, and Easy Management

[0x9] grilled cheese jam session now online

[0xA] Vetted – Top 3 WordPress Speed Plugins

Free Information Technology Magazines and Downloads from bestsecuritytips.tradepub.com

Free publications about information technology and digital communication.

[0x1] The ROI of Application Delivery Controllers in Traditional and Virtualized Environments

[0x2] Blackboard at the University of Kentucky

[0x3] Build a Smarter IT Infrastructure for Your School

[0x4] Building a Smarter IT Infrastructure for Local Government

[0x5] Business Continuity and Disaster Recovery Guide

[0x6] IT Pain Relief for Midmarket Businesses Through End-to-End Infrastructure Virtualization

[0x7] Managing the Server Migration Process

[0x8] Accelrys Biological Registration: Mastering Biological R&D at Its Roots

[0x9] The Beginner's Guide to Joomla

[0xA] Finding a Cure for Downtime

Robert E. Lee

Thoughts on security testing methodologies, regulatory compliance, security tools, security metrics, and other current events.

[0x1] Sockstress TCP DoS - CERT-FI Advisory

[0x2] Sockstress TCP DoS - CERT-FI Statement Update

[0x3] Jack C. Louis - The loss of a dear friend...

[0x4] Good to be back...

[0x5] Unicornscan on Debian - Some updated notes...

[0x6] TCP DoS tool (Complemento)...

[0x7] Fnta [Error fantaip.c:428] short packet!!!!

[0x8] Athens...

[0x9] On the road again...

[0xA] T2 Sockstress Talk Recap...

lkml.org

lkml.org - the realtime linux kernel mailinglist archive

[0x1] Re: [PATCH] MMC: move regulator handling closer to core v2

[0x2] crash failure with 2.6.36-rc3 vmcore

[0x3] Re: [PATCH 2/2] Input: stmpe-ts - return -ENOMEM if memory allocat ...

[0x4] Re: [PATCH v2 6/6] ARM: pxa168: aspenite: add board support for keypad

[0x5] Re: Linux Kernel GDB tracepoint module 2010-8-30 release

[0x6] Re: [PATCH v2] ARM: uaccess: Implement strict user copy checks

[0x7] BUG ext4_inode_cache: Padding overwritten. 0xffff88000008fe00-0xff ...

[0x8] Re: [PATCH 3/3] mm: page allocator: Drain per-cpu lists after dire ...

[0x9] Re: Linux Kernel GDB tracepoint module 2010-8-30 release

[0xA] [PATCH 1/3] [ARM] Translate delay.S into (mostly) C

Dr.Dobb's Security Articles

[0x1] NSF Announces Future Internet Architecture Awards

[0x2] ActivePython Upgrades Announced

[0x3] Pay-As-You-Go Backup for SMBs

[0x4] Steganography Detection Tool Released

[0x5] XIA Internet Architecture Project Underway

[0x6] USB Drive Virus Attack Verified

[0x7] Context-Based Privacy Model

[0x8] SMT Boosters Recognized at Verification Event

[0x9] Keyloggers Evade Anti-Spyware

[0xA] Survey: Cloud Hacking Is On a 'Vast' Scale

CSOONLINE.com - Network Security

[0x1] What IT folks can learn from the acrimonious Arizona Immigration debate

[0x2] Krebs: FCC must make ISPs crack down on spammers and malware

[0x3] Organizing sensitive data in the cloud

[0x4] Preserving the integrity of software through the supply chain

[0x5] Deep theater defense

[0x6] Workarounds: 5 ways employees try to access restricted sites

[0x7] Security blunders 'dumber than dog snot'

[0x8] Needed: Better emergency playbook for DDoS attacks

[0x9] SANS Boston 2010: Never too old to learn

[0xA] A scientific breakthrough for cryptography?

IBM Internet Security Systems Frequency X Blog

Frequency X, the blog site for IBM Internet Security Systems' world-renowned security research and development team, X-Force, provides an opportunity for the researchers to converse directly with the world about threats and vulnerability research.

[0x1] The Monday After The SQL Storm

[0x2] Protecting Against Remote DLL Preloading Vulnerabilities

[0x3] Mid-Year 2010 X-Force Trend and Risk Report - Update to Unpatched Vulnerabilities Chart

[0x4] A new wave of ZIP malware spam

[0x5] MS10-046 .lnk vulnerability? We have that...

[0x6] Playing With Tabnabbing

[0x7] Follow us at Blackhat on Twitter!

[0x8] Blackhat USA for Mobile Researchers

[0x9] What I'm seeing at Blackhat

[0xA] Understanding the Low Fragmentation Heap at Blackhat

Security Systems News Top Stories

Top stories from the security industry.

[0x1] Sonitrol loses 8-year-old lawsuit

[0x2] Per Mar sees opportunity in South Bend

[0x3] 3M agrees to buy biometrics maker Cogent for $950m

[0x4] ADS acquires in Tennessee

[0x5] VRI partners with CareCentrix for evolved PERS

[0x6] Guardian Protection nabs third-largest Brink's/Broadview dealer

[0x7] Two insiders to bring 'undefeatable' door contact to alarm industry

[0x8] Fastest growing firms in security?

[0x9] PSIA chairman: Get involved!

[0xA] Platinum VoIP partnership intended to help ease sales process

Technology News

Get the latest technology news, comment and anlaysis from the Telegraph.

[0x1] IFA 2010: Television takes to the web

[0x2] 25th anniversary of the Buckyball celebrated by interactive Google Doodle

[0x3] WinkBall: army of citizen journalists capture 20,000 video clips at Notting Hill Carnival

[0x4] Windows Phone 7 ready for manufacturers

[0x5] IFA 2010: Sky endorse LG TV for new 3D service

[0x6] IFA 2010: Panasonic to offer 3D movies direct from TV set

[0x7] Broadband advertising 'misleading consumers'

[0x8] Dell hands victory to HP in fight for 3PAR

[0x9] IFA 2010: Best ebook readers and tablet computers

[0xA] Facebook's Apple Ping demands were 'too onerous', says Jobs

Smart Security by Dharmesh M Mehta

An Application Security Blog

[0x1] Getting Hands Dirty with Ettercap Tool

[0x2] About the 'Rugged' Initiative

[0x3] Plenty of (IN)Secure Broadband Routers

[0x4] Mumbai to Host India’s First e-Crime Forum

[0x5] Latest Phishing Site of ICICI Bank

[0x6] Application security should be addressed in initial SDLC stages

[0x7] Can your Exchange Administrator view your mailbox

[0x8] No Built-In Response.HTMLEncode in Java

[0x9] Dev Tools for Security Testing

[0xA] Botnet Attack Details from Kaspersky

F5 Networks White Papers

F5 white papers provide information on critical technology areas and how F5 products help you improve upon or prepare for their deployment.

[0x1] Load Balancing 101: Firewall Sandwiches

[0x2] Deploying F5 Application Ready Solutions with VMware View 4.0

[0x3] Authentication 101

[0x4] Understanding Advanced Data Compression

[0x5] Kerberos Constrained Delegation and Protocol Transition in Smart Card PKI Architectures

[0x6] Unleashing the True Potential of On-Demand IT

[0x7] Providing Security and Acceleration for Remote Users

[0x8] BIG-IP LTM VE-The Virtual ADC Your Physical ADC Has Been Missing

[0x9] Availability and the Cloud

[0xA] Cloud Balancing: The Evolution of Global Server Load Balancing

CSOONLINE.com - Access Control

[0x1] Workarounds: 5 ways employees try to access restricted sites

[0x2] Terry Childs is Denied Motion for Retrial

[0x3] Microsoft pushes ADFS 2.0, federated ID for cloud

[0x4] Researchers: Poor password practices hurt security for all

[0x5] Enterprise risk management: all systems go

[0x6] UK to Kill Off National ID Card Program

[0x7] Two-factor authentication through Windows Server 2008 Net Policy Server

[0x8] Endpoint Security Gets Complicated

[0x9] Data Mapping: Domesticating the Wild Rabbit

[0xA] Managing Those Forgotten Mechanical Keys

ITWeb Computing

Latest ICT Computing news

[0x1] Cloud computing brings risks

[0x2] Google makes concessions to Europe

[0x3] Stratus introduces ftServer line

[0x4] Toshiba unveils green hard drive

[0x5] The Beatles enter the digital age

[0x6] Mobile devices get virtualisation app

[0x7] Starship releases NAS solution

[0x8] European server sales hit rock bottom

[0x9] Gaming tech reaches operating room

[0xA] Power policies not enough

Security Labs

[0x1] What are the top threats to Cloud Computing?

[0x2] Phoenix Exploit Kit's Random Access Obfuscation

[0x3] Apple QuickTime "_MARSHALED_PUNK" 0-day

[0x4] Web Spam leading to Friendster on the rise

[0x5] This Month in the Threat Webscape - July 2010

[0x6] Technical Analysis on iPhone Jailbreaking

[0x7] You have Rogue Mail!

[0x8] Media Temple injections lead to Phoenix Exploit Kit

[0x9] 2010 Tax-Themed Malicious Emails

[0xA] JailbreakMe, drive-by attacks on iOS, and limiting potential attacks

CSO Blogs - Leadership

[0x1] Griftslist

[0x2] The Forrester Information Security Maturity Model

[0x3] When is a Limitation of Liability not a Limitation of Liability?

[0x4] Building The High-Performance Security Organization

[0x5] Cybersecurity Action at the White House

[0x6] Wrapping up in Zurich

[0x7] AQAP - A Brief Overview of 'Inspire'

[0x8] DefCon 2010 - A preview of the Ninja Networks Badge

[0x9] Day 2: Malware, Botnets and Partnerships...Oh My!

[0xA] Tackling the Big Issues in Zurich: Day 1

Andy ITGuy - Information Security Blog

The voice of reason in a world of FUD

[0x1] ShoeCon 2010

[0x2] Are we really still doing this in 2010?

[0x3] 4th Anniversary of the blog

[0x4] Full Disclosure is Irresponsible

[0x5] Free! As in chips and salsa

[0x6] Why compliance is chosen over security

[0x7] The message has to be the message

[0x8] Doing my part to “debumb” the blog sphere

[0x9] My advice to Google

[0xA] Guest on Pauldotcom Security Weekly

The Falcon's View

Mental meanderings of an infosec obsessive...

[0x1] Approaching the Problem Backwards

[0x2] Cyber War and the Value of FUD

[0x3] Endpoint Security HIPS Flayed By NSS Labs

[0x4] A Stroll Down Amnesia Lane

[0x5] Password Complexity is Lame

[0x6] Of Antiquities and the Old Guard

[0x7] InfoSec Lessons from The Blind Side

[0x8] Dear People, Enough With the One-Time Code Tokens

[0x9] What's the deal with SCADA & Smart Grid?

[0xA] Speaking at ISSA International Conference

Tech Digest

Gadgets, mobile phones, news and reviews

[0x1] IFA 2010: Sky back LG for 3D TV future, hardware deals on the way for subscribers

[0x2] IFA 2010: 65 inch 3D TV is Samsung's show-stopper

[0x3] IFA 2010: Samsung Galaxy Tab just the first in a new slate family

[0x4] IFA 2010: Samsung Galaxy Tab - all the details revealed

[0x5] Apple launch: New iPod Shuffle and Nano, plus what's in store for iOS4.2

[0x6] Dust off your ageing PC: System Mechanic 10 digs deeper to root out new causes of computer slowdown

[0x7] IFA 2010: LG Smart TV packs in a ton of apps and Wii-style remote

[0x8] Orange network rolls out HD voice calls

[0x9] Video: Motorola Defy hands on preview

[0xA] Motorola Milestone 2 - Hands on pics

dropsafe

security, software, cycles, food, drink, life...

[0x1] Somebody asked what’s so scary about RPZ?

[0x2] Demo Password Cracker in 1 line of Perl

[0x3] Eileen’s Baked Apple Recipe

[0x4] Regarding the police’s use of “fluid debonding agents” for #superglue protestors

[0x5] #TFL has a “Head of Behaviour Change” job role?

[0x6] political correctness question

[0x7] NYTimes damning #WikiLeaks by faint acknowledgement of quashed rape warrant?

[0x8] A Contrarian View: Evolutionary is pressure being applied to the Web. Excellent!

[0x9] HTML5 as an analogue for the perennial security problem

[0xA] Do you frequently benefit from knowing the location of friends via Latitude or other Geolocation services?

Nmap Hackers

Moderated list for the most important new releases and announcements regarding the Nmap Security Scanner and related projects. We recommend that all Nmap users subscribe.

[0x1] Nmap Defcon Release: Version 5.35DC1

[0x2] Nmap News and Last Chance to Take the Survey

[0x3] Survey Reminder

[0x4] Nmap/SecTools Survey and GSoC Deadline

[0x5] Nmap 5.30BETA1 Released w/37 new scripts and new Apple vuln

[0x6] Nmap 5.21 released

[0x7] Lots of Nmap News

[0x8] Nmap 5.20 Released

[0x9] Nmap 5.00 Released!

[0xA] Nmap news: stable release candidate 4.90RC1, SoC team, and new translations

SophosLabs blog

Viruses, worms, spam, vulnerabilities.. Sophos experts discuss the latest security threats and attacks.

[0x1] Oh Look. Another 419 Scam.

[0x2] The correct CV(or malware)

[0x3] To infinity and beyond

[0x4] FakeAV, now with sounds

[0x5] Encryption with no separate external key

[0x6] This could save your LIFE!

[0x7] Phish net stockings?

[0x8] DLL pre-loading attack vector addressed by Microsoft

[0x9] It’s that time again…

[0xA] You’re Not That Well Financed, Are You?

LinuxSecurity.com: Mandriva Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Review: The Official Ubuntu Book

[0x3] Mandriva: 2010:170: wget

[0x4] Mandriva: 2010:169: mozilla-thunderbird

[0x5] Mandriva: 2010:168: openssl

[0x6] Mandriva: 2010:167: perl-libwww-perl

[0x7] Mandriva: 2010:166: libgdiplus

[0x8] Mandriva: 2010:165: libHX

[0x9] Mandriva: 2010:164: phpmyadmin

[0xA] Mandriva: 2010:163: phpmyadmin

Panda Research Blog

Leading the way in proactive malware detection

[0x1] AV-Comparatives Performance Test 2010

[0x2] PC Security Labs July 2010 Test Results

[0x3] AV-Test Q2-2010 Full Product Test Results

[0x4] Panda SafeCD 4.4.3.0

[0x5] Automated False Positives

[0x6] AV Comparative Against Chinese Malware

[0x7] Vodafone distributes Mariposa – Part 2

[0x8] Panda Cloud Test File

[0x9] Vodafone distributes Mariposa botnet

[0xA] Spam Honeypot Catch

Development & Integration White Papers

C Languages, EAI, Java, Visual Basic, and Web Design White Papers

[0x1] Insiders' Guide to Evaluating Remote Control Software

[0x2] Improving Application Development with Digital Libraries

[0x3] Introduction to The Most Popular Commercial Open Source Backup Software - Amanda Enterprise

[0x4] How Can I Back Up MySQL Database Without Killing Application Performance? NetApp and Zmanda Have the Answer.

[0x5] Achieving the Impossible- Unlimited Application Scalability

[0x6] Data Centre Transitions: UNIX to Linux

[0x7] Data Grids and Service  Oriented Architecture

[0x8] An Innovative Approach to Managing Software Requirements

[0x9] Using Virtualization to Maximize Your IT Environment

[0xA] Why Every Data Center Needs Automation

Twitter / RuggedSoftware

Twitter updates from Rugged / RuggedSoftware.

[0x1] RuggedSoftware: POLL: HP-Fortify acq: Does this further legitimize Application Security? or does it drive premature commiditization?

[0x2] RuggedSoftware: RT @CodenomiconLTD: See @joshcorman from Rugged Software presenting at CodenomiCON 2010!! http://youtu.be/FFlJ7WzwXW8 <- 5 min SpeedTalk

[0x3] RuggedSoftware: NEW WORD: Vulnerabiquity == The pervasive nature of software vulnerabilities <- We need to get #Rugged

[0x4] RuggedSoftware: RT @Beaker: Hey @RuggedSoftware & @joshcorman it occurs to me you need to make Rugged videos like the @oldspice dude <- Volunteers?

[0x5] RuggedSoftware: Met some great UK/German Allies in London for the #Rugged cause. EMEA needs @RuggedSoftware too! Who wants to help?

[0x6] RuggedSoftware: Good chat @jeremiahg anti-waf-software-security-only-zealotry http://bit.ly/bIHjop #Rugged takes complementary methods

[0x7] RuggedSoftware: RT @shrdlu: My new AppSec kit: http://twitpic.com/20s5sr <= I Spy @RuggedSoftware stickers, wasabi crackers, and PrivEsc game? WOW

[0x8] RuggedSoftware: RT @WeldPond: Is"remote code update" best kind of backdoor u can plant in legit apps? With it u r ready for the next priv escalation bug

[0x9] RuggedSoftware: RT @dewzi: Just read @securityninja's whitepaper Secure Development Principles. Dead on, easy to read. (A welcome change) http://is.gd/cXphK

[0xA] RuggedSoftware: RT @japi999: The Rugged Software Manifesto. Every software developer should tape this on his/her cubicle wall. http://ruggedsoftware.org/

Observations from a Tech Architect: Enterprise Implementation Issues & Solutions

Enterprise Technology Architect Craig Borysowich shares the challenges and achievements of enterprise solution design and implementation.

[0x1] Active Directory Routing Group Topology Options

[0x2] Server Management Suite Comparison

[0x3] Projects versus Day-to-Day IT Operations

[0x4] Sample Software Evaluation Matrix – Billing system

[0x5] Sample Code Reuse Program Definition – Part 10 – Product Metrics

[0x6] Sample Code Reuse Program Definition – Part 9 – Reuse Metrics

[0x7] Sample Code Reuse Program Definition – Part 8 – Component User

[0x8] Sample Code Reuse Program Definition – Part 7 – Component Factory

[0x9] Sample Code Reuse Program Definition – Part 6 – Reuse Program Tools

[0xA] Sample Code Reuse Program Definition – Part 5 – Reuse Role Overview

2600: The Hacker Quarterly

Off The Hook and Off The Wall

[0x1] Off The Hook show for September 1, 2010

[0x2] Off The Wall show for August 31, 2010

[0x3] ONE LAST CHANCE TO SAVE THE HOTEL PENNSYLVANIA

[0x4] NEXT HOPE VIDEOS AND AUDIO NOW AVAILABLE

[0x5] AUDIO AND VIDEO FROM SELECTED HOPE TALKS NOW AVAILABLE

[0x6] NEXT HOPE IPHONE APP NOW AVAILABLE

[0x7] PREREGISTRATION FOR THE NEXT HOPE CLOSING SUNDAY NIGHT

[0x8] SUMMER ISSUE OF 2600 RELEASED

[0x9] THE NEXT HOPE SPEAKER SCHEDULE IS NOW ONLINE

[0xA] 45 TALKS THAT WILL BE AT THE NEXT HOPE - STILL NOT HALF THE TOTAL!

InternetNews Realtime News for IT Managers

All the top news, features, analysis and insight into enterprise and Internet technology, geared for IT managers and delivered by the best in the industry.

[0x1] Microsoft IE Browser Slips in Share After Gains

[0x2] Microsoft Tool 'Hardens' Mission Critical Apps

[0x3] Twitter Touts Mobile, Third-Party Client Use

[0x4] Firms Slow to Virtualize Mission-Critical Apps

[0x5] Dell Regains No. 2 Spot in PC Market Share

[0x6] Cisco Sprucing Up Call Centers With Social Media

[0x7] FCC Study Finds Broadband Speeds Lagging

[0x8] Cisco Snags Arch Rock in Smart Grid Play

[0x9] Microsoft Begins Yahoo Ad Integration

[0xA] Google, AOL Extend Search Agreement

CSOONLINE.com - Business Continuity

[0x1] What the Gulf Oil Spill can teach CIOs about disasters

[0x2] Happy vacation! Security at tourist spots

[0x3] A Daily Dashboard for security and business continuity

[0x4] Business continuity, not data breaches, a top concern for tech firms

[0x5] What if the smart grid has stupid security?

[0x6] Offshore banking more secure? You're dreaming

[0x7] Super Duper Tabletop Disaster Scenarios

[0x8] Travel Security: What to Pack to Survive a Natural Disaster

[0x9] Massive Storms Don't Halt D.C. IT Ops

[0xA] Disaster in Haiti: Advice for Employees and Operations on the Ground

AskApache Web Fire

.htaccess, Net Security, Server Tech, Web Development, Tutorials and Articles. Come through in something amazing.. blazing.

[0x1] Crazy POWERFUL Bash Prompt

[0x2] Questions I Ask Web Hosting Companies, Before Buying

[0x3] HOWTO: Uninstall CPANEL over SSH

[0x4] Real-Life Htaccess Files from My Server

[0x5] 30x Faster WP-Super Cache Site Speed

[0x6] Advanced WordPress wp-config.php Tweaks

[0x7] PortaPutty Auto-Reconnecting SSH Tunnels on an Encrypted TrueCrypt Portable USB Key w GPG

[0x8] Optimize a Website for Speed, Security, and Easy Management

[0x9] grilled cheese jam session now online

[0xA] Vetted – Top 3 WordPress Speed Plugins

Security to the Core | Arbor Networks Security » 2010

[0x1] YoyoDDos: A new family of DDos bots

[0x2] Takedown

[0x3] World Cup versus the Internet

[0x4] IPv6 DNS Statistics

[0x5] The Battle of the Hyper Giants (Part I)

[0x6] A Brief Look at Facebook Outage

[0x7] LEET 2010 Coming Up

[0x8] Trojan.Heloag Downloader Analysis

[0x9] Why Hackers Love the Cloud

[0xA] WhiteLotus DDoS Botnet Analysis

GovInfoSecurity.com Articles RSS Syndication

GovInfoSecurity.com.com RSS News Feeds on government information security articles.

[0x1] State CISOs: Tough Challenge to Secure Data

[0x2] Heartland, Discover Settle for $5 Million

[0x3] How to Protect Consumers from ID Theft

[0x4] Cloud Computing: Questions to Ask

[0x5] U.S.-CERT Eyes Expanded Mission

[0x6] Retirees Hit by Website Breach

[0x7] Video: Why Cyber Challenge is Needed

[0x8] ID Theft: Courts Cracking Down

[0x9] Key Elements of Risk Management

[0xA] DoD Unveils New Cyber Defense Strategy

GNUCITIZEN

Information Security Think tank

[0x1] ColdFusion directory traversal FAQ (CVE-2010-2861)

[0x2] 1ST European Edition of HITB Coming Up!

[0x3] Apple further locks down CUPS (CVE-2010-0540)

[0x4] Hacking Linksys IP Cameras (pt 6)

[0x5] Dnsmap v0.30 is now out!

[0x6] Old-school Remote Command Exec Vulnerabilities on Avaya Intuity

[0x7] Skydive

[0x8] Free Web Application Security Testing Tool

[0x9] Of Sec Cons and Magstripe Gift Cards

[0xA] CVE-2009-1151: phpMyAdmin Remote Code Execution Proof of Concept

ComPly With Me--- a HIPAA Forum

[0x1] 3 I's

[0x2] Blue Suit, Red Cape and Red Boots

[0x3] International Talk Like a Pirate Day!

[0x4] Ah, Sweet Mystery

[0x5] Baby One More Time

[0x6] Over and over

[0x7] My Way

[0x8] Time After Time

[0x9] It Wasn't Me

[0xA] Secret Love

xorl %eax, %eax

[0x1] CVE-2010-0746: DeviceKit Local Privilege Escalation

[0x2] CVE-2010-1187: Linux kernel TIPC NULL Pointer Dereference

[0x3] Book: How To Repair and Maintain American V-Twin Motorcycles

[0x4] Linux kernel UNIX Extensions CIFS NULL Pointer Dereference

[0x5] Libnids IP Fragmentation Remote NULL Pointer Dereference

[0x6] CVE-2010-0415: Linux kernel move_pages(2) Information Leak

[0x7] Linux kernel Alsa (hda-intel) Division by Zero Crash

[0x8] Book: Mind Magic

[0x9] Linux kernel Tunnels Race Condition

[0xA] xorl and the army…

LinuxSecurity.com: SuSE Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Review: The Official Ubuntu Book

[0x3] SuSE: 2010-038: kernel

[0x4] SuSE: 2010-036: kernel

[0x5] SuSE: Weekly Summary 2010:016

[0x6] SuSE: 2010-035: Linux kernel

[0x7] SuSE: Weekly Summary 2010:015

[0x8] SuSE: 2010-034: flash-player

[0x9] SuSE: Weekly Summary 2010:014

[0xA] SuSE: 2010-033: Linux kernel

Technibble

A Resource for Computer Repair Technicians & to get PC tech support help.

[0x1] Technibble Subscriber Only Competition: 40 Fabs Autobackup v3 Licenses To Give Away!

[0x2] TDL3 Rootkit x64 Goes In The Wild

[0x3] 1-in-4 Worms Spread Through Infected USB Devices

[0x4] Turning Website Visitors Into Clients

[0x5] 40 Windows Apps Contain Critical Bug

[0x6] MessenPass – Recover Lost Instant Messenger Passwords

[0x7] Facebook Warns of Clickjacking Scam

[0x8] Malicious Widget Hacked Millions of Web Sites

[0x9] Computer Parts Questions Answered

[0xA] Microsoft Warns Exploits Coming for Newly-Patched Bugs

Symantec Security Response Podcasts

Listen online, download to your computer, or subscribe and get the latest information automatically.

[0x1] Update from Symantec Security Technology & Response

[0x2] Search Engine Poisoning

[0x3] Symantec Security Response Profile: Zulfikar Ramzan

[0x4] ISTR XIV - Phishing and Spam in the Economic Downturn

[0x5] ISTR XIV - Financially Motivated Malicious Code Development

[0x6] ISTR XIV - Web-Based Attacks

[0x7] e-Discovery Virtual Roundtable: Email & Web 2.0

[0x8] Symantec Report on the Underground Economy

[0x9] Norton AntiVirus 2009 and Norton Internet Security 2009 Product Overview

[0xA] Internet Security Threat Report Volume 13: Phishing Trends

DRJ Current Articles

Current Articles from Disaster Recovery Journal

[0x1] Mitigating Wildfire Disaster: Early Detection and Commitment

[0x2] A Better Way to Recover from Natural Disasters

[0x3] 11 Steps to a Better BIA

[0x4] Avoiding Laptop Separation Anxiety At The Airport

[0x5] Reserve Response to Search and Rescue Operations Following Hurricane Katrina

[0x6] Enabling data security policy hardware independent

[0x7] Seven Crucial Personal Strategies to Get Your Boss to Listen to You

[0x8] What Do I Do If My Business Continuity Program Is Failing?

[0x9] Datacenter Energy Regulation: It’s Real, It’s Coming, It’s Expensive

[0xA] Compliance & Disaster Proof Hardware: Fireproof Waterproof Hard Drives for Electronic ...

Paul Thurrott's WinInfo News

News about Windows and Microsoft. No fluff.

[0x1] WinInfo Short Takes: Week of September 6, 2010

[0x2] No Surprises at Apple Music Event

[0x3] Windows 7 Family Pack Coming Back for the Holidays

[0x4] Windows Phone 7 Heads to Manufacturing

[0x5] Microsoft: Android Is More Expensive than Windows Phone

[0x6] What the? Microsoft Announces Xbox Live Price Hike

[0x7] Microsoft Calls a Mulligan, Will Rejigger Live Sync as Windows Live Mesh

[0x8] WinInfo Short Takes: Week of August 30, 2010

[0x9] Yahoo! Search Completes Transition to Bing

[0xA] Exchange Server 2010 Service Pack 1 Arrives

LinuxSecurity.com: Foresight Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Review: The Official Ubuntu Book

[0x3] Foresight: firefox

[0x4] Foresight: python

[0x5] Foresight: firefox

[0x6] Foresight: imageop

[0x7] Foresight: nss_ldap

[0x8] Foresight: rsync

[0x9] Foresight: e2fsprogs

[0xA] Foresight: tetex

Securityvulns exploits channel

Securityvulns exploits newsline

[0x1] museex2.py

[0x2] museex1.py

[0x3] trilogicex.py

[0x4] http://secgroup.ext.dsi.unive.it/kerberos/

[0x5] easyftpex.py

[0x6] dlinkwbr2310ex.pl

[0x7] swsex.pl

[0x8] quickeasyex.pl

[0x9] qqex.py

[0xA] dmfilemanagerex.php

Techworld Blogs

Aggregate feed of all active Techworld Blogs

[0x1] Gmail's 'priority inbox' - more evidence that corporate email is obsolete

[0x2] The US cyberstrategy 3.0 risks starting Cold War 2.0

[0x3] Grails & Hudson part 1: CodeNarc

[0x4] Data breach fines will not stop the rot

[0x5] Measuring the rate of change for SNMP values using Nagios Plugins

[0x6] Intel is buying McAfee for its engineers, not its products

[0x7] Stupid passwords are a form of rebellion

[0x8] Stupid passwords are a valid rebellion against technology

[0x9] The perils of writing about open source

[0xA] FAST and loose on cloud

CSOONLINE.com - PCI and Compliance

[0x1] Deep theater defense

[0x2] Claiming PCI or any other compliance - daily

[0x3] Cloud security strategies: Where does IDS fit in?

[0x4] 13 essential steps to integrating control frameworks

[0x5] Heartland ramps up first end-to-end encryption

[0x6] Study: Advanced threats a growing problem for security

[0x7] Security group stretching payment-card standards cycle to three years

[0x8] Data Protection: EnergySec's plan for critical infrastructure

[0x9] Study: Cost of data breach in U.S. is highest world wide

[0xA] Security pros, meet your new best friend

Rootsecure.net

The security news site for systems administrators & hackers - keeping you informed about all the top security news stories updated daily

[0x1] H Security: Microsoft hardening tool with graphical user interface

[0x2] Slate: The Internet's Secret Back Door "Web users in the United Arab Emirates have more to worry about than having just their BlackBerries cracked"

[0x3] CNN: Users amused, annoyed by Facebook Places

[0x4] Slashdot: Major Battle Brewing Between French Gov't and ISPs

[0x5] CNN: Toshiba recalls 41,000 computers over risk of burns

[0x6] Wired: Murdoch Reporters Phone-Hacking Was Endemic, Victimized Hundreds

[0x7] NewTeeVee: Flash on Android Is Shockingly Bad

[0x8] Invisible Things: About Apples Security Foundations, Or Lack Of Thereof...

[0x9] SC Magazine: Certain HP scanners can permit snooping and spying

[0xA] Nature: Hacking commercial quantum cryptography systems by tailored bright illumination

M86 Security Labs Blog

News and commentary about Internet-borne security threats from M86 Security.

[0x1] Click Fraud from Drooptroop

[0x2] FedEx Spam Seeding New Asprox Binary

[0x3] Pushdo Botnet Crippled

[0x4] Malicious Spam on the Increase

[0x5] Statement About Infection of Macs by ZeuS

[0x6] Customers of Global Financial Institution Hit by Cybercrime

[0x7] Phishing New Zealand from Nigeria

[0x8] Phoenix Exploit Kit 2.0

[0x9] Revisiting the King of Spam

[0xA] GootKit - Automated Website Infection

shell-fu

[0x1] Tip #894: Watch for Ubuntu 9.10 Launch

[0x2] Tip #892: Check memory and swap from command line

[0x3] Tip #889: Convert virtually any video into a DVD-valid MPEG2 stream

[0x4] Tip #885: Random password generator.

[0x5] Tip #882: Find last modified files on a filesystem

[0x6] Tip #879: Learn not to mistype ls

[0x7] Tip #878: Random xkcd comic

[0x8] Tip #874: Count how many packages have been installed by pacman

[0x9] Tip #873: Import ssh host keys without verification

[0xA] Tip #872: Reverse geocode with bash

CSOONLINE.com - Physical Security

[0x1] Executive protection: Why the private sector model is broken

[0x2] Security at the Little League World Series

[0x3] Mexican trucking, tariffs, security and safety

[0x4] Whodunnit? 5 free or cheap tools to manage investigations

[0x5] Security blunders 'dumber than dog snot'

[0x6] Stanley vs. Verizon: the integrated security smackdown

[0x7] Artful security: Design elements that ensure security, but also emphasize style

[0x8] Happy vacation! Security at tourist spots

[0x9] Covert investigations 3: covert surveillance setup

[0xA] A Daily Dashboard for security and business continuity

Will Hack For SUSHI

Hacking and Defending Wireless

[0x1] GIAC GAWN Ethical Hacking Wireless Testing Aid

[0x2] Reflections on “hole196″

[0x3] Evading IPS/IDS with TCP Checksum Forgery

[0x4] FaceTime Protocol Analysis

[0x5] WiMAX Network Scanning Work-in-Progress

[0x6] Updated FreeRADIUS-WPE

[0x7] Maximum Overdrive Redux?

[0x8] MiFi Config Hack

[0x9] Verizon MiFi Pwned (maybe they should take my class)

[0xA] Wordlist Generation – CeWL on Ubuntu

AVG Top Threats

Latest security threats

[0x1] Downadup/Conficker worm

[0x2] I-Vers/Nuwar

[0x3] I-Vers/Nuwar

[0x4] I-Worm/Nuwar

[0x5] Win32/Mabezat.A

[0x6] Downloader.Tibs

[0x7] Trojan Downloader.Agent.UZM

[0x8] I-Worm/Stration downloader

[0x9] I-Worm/Stration downloader

[0xA] Stration downloader

www.rootkit.com

: www.rootkit.com News :

[0x1] HVM- going into details

[0x2] Kernel Sockets Module based on TDI and WSK - updated

[0x3] Nostalgia: n00bk1t, an advanced ring3 rootkit in C

[0x4] TDL3 - Why so serious? Let's put a smile on that face ..

[0x5] littlebu's blog: How can i get a blog here

[0x6] DiabloNova's blog: 043: Prevx, The Epic Fail

[0x7] DiabloNova's blog: 042: Blovex for Prevx

[0x8] DiabloNova's blog: 041: SpiDiE 2.2 come back

[0x9] DiabloNova's blog: 040: Prevx pointless hooking

[0xA] DiabloNova's blog: 039: Prevx strike back!... and fails.

Deb-Tech

[0x1] Using Windows Live Photo Gallery to improve your pictures

[0x2] Outlook Social Connector for Facebook: Thumbs Up

[0x3] Windows Media Center – my way

[0x4] Server 2008 R2 Help Needs Help

[0x5] Zune, Part 2: The Magic of Podcasts

[0x6] Learning to love my Zune

[0x7] If you don’t believe in Magic, you don’t know Jack

[0x8] On Facebook, Everybody Cares that you’re a Dog

[0x9] Social Networking and the Nature of Friendship

[0xA] Ebook Reader Software Comparison

Security Basics

A high-volume list which permits people to ask "stupid questions" without being derided as "n00bs". I recommend this list to network security newbies, but be sure to read Bugtraq and other lists as well.

[0x1] Re: Is Outlook Anywhere secure?

[0x2] using cvss to assess process problems

[0x3] Re: download by specified file type

[0x4] Outlook anywhere

[0x5] download by specified file type

[0x6] RE: RainbowCrack rainbow table generate

[0x7] RainbowCrack rainbow table generate

[0x8] Re: security advice

[0x9] [HITB-Announce] HITB2010 SIGNINT Sessions

[0xA] RE: security advice

LinuxSecurity.com: EnGarde_Secure_Linux Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Review: The Official Ubuntu Book

[0x3] EnGarde Secure Community Release Notes 3.0.10

[0x4] EnGarde Secure Community 3.0.8 Release Notes

[0x5] EnGarde Secure Community 3.0.7 Release Notes

[0x6] EnGarde Secure Community 3.0.6 Release Notes

[0x7] EnGarde Secure Community 3.0.5 Release Notes

[0x8] EnGarde Secure Community 3.0.4 Release Notes

[0x9] EnGarde Secure Community 3.0.3 Release Notes

[0xA] EnGarde Secure Community 3.0.2 Release Notes

Wired Top Stories

Top Stories

[0x1] In Defense of Google, Or Why Consumer Watchdog is Full of It

[0x2] NASA Footage Sets Scene for Quantum Quest Movie

[0x3] 'Earth-like' Exoplanet Could Have a Comet's Tail

[0x4] Duke Nukem Forever Lives Again at PAX

[0x5] Hands-On With HDR Photos in the Next iPhone Update

[0x6] Very Few Bones to Pick With Samsung's Big, Beautiful Phone

[0x7] Smart Gear for the School Year

[0x8] Hot Helping of Rapid Wi-Fi Anywhere You Go? Yes, Please

[0x9] Glint of Starlight Could Reveal Liquid Oceans on Exoplanets

[0xA] Digital Pen Gives Boring Note-Taking a Modern Kick

ZDI: Upcoming Advisories

Upcoming Advisories

[0x1] ZDI-CAN-877: Novell

[0x2] ZDI-CAN-883: Mozilla Firefox

[0x3] ZDI-CAN-878: CA

[0x4] ZDI-CAN-874: Apple

[0x5] ZDI-CAN-873: Symantec

[0x6] ZDI-CAN-872: Symantec

[0x7] ZDI-CAN-871: Symantec

[0x8] ZDI-CAN-870: Symantec

[0x9] ZDI-CAN-866: Mozilla Firefox

[0xA] ZDI-CAN-865: Symantec

Rational Survivability

Hoff's Ramblings about Information Survivability, Information Centricity, Risk Management and Disruptive Innovation. Oh, I have a fondness for virtualization and cloud computing security, too...

[0x1] VMware’s (New) vShield: The (Almost) Bottom Line

[0x2] How To Wield the New vShield (Edge, App & Endpoint)

[0x3] Why Is NASA Re-Inventing IT vs. Putting Men On the Moon? Simple.

[0x4] Dear Verizon Business: I Have Some Questions About Your PCI-Compliant Cloud…

[0x5] Hoff’s 5 Rules Of Cloud Security…

[0x6] VMworld – v0dgeball Deathmatch Details: vSquirrels vs. Sakacc’s Army…

[0x7] Video Of My Cloudifornication Presentation [Microsoft BlueHat v9]

[0x8] Airing Private Cloud’s Dirty Laundry…

[0x9] If You Could Have One Resource For Cloud Security…

[0xA] See You At Black Hat 2010 & Defcon 18?

hacklab.to

Toronto's hacker collective

[0x1] LED Workshop: Success!

[0x2] LED Workshop Rescheduled for Aug 8 @ 14:00

[0x3] Tim Pritlove Presents Liquid Feedback

[0x4] LED Workshop – July 25 at 2 p.m.

[0x5] Hacklab’s Birthday Party – July 23

[0x6] Unpatched Tuesdays – our open house night

[0x7] G20 Arrest

[0x8] Ubuntu Lucid Party

[0x9] Pi Day Party!

[0xA] Esperanto boot camp (Saturday January 23)

OVAL Repository Latest Updates

This feed provides information about the latest updates to the OVAL Repository, including new OVAL definitions; definitions that have changed status (e.g., from Draft to Interim or Interim to Accepted); and definitions that have been modified is posted here. Each update to the OVAL Repository will also update this feed. The OVAL Repository is updated as edits and additions are completed. It is possible for this feed to be updated several times per day, but updates rarely occure more often than once per day.

[0x1] Definition oval:org.mitre.oval:def:980 has been added to the OVAL Repository.

[0x2] Definition oval:org.mitre.oval:def:11757 has been added to the OVAL Repository.

[0x3] Definition oval:org.mitre.oval:def:11914 has been added to the OVAL Repository.

[0x4] Definition oval:org.mitre.oval:def:11966 has been added to the OVAL Repository.

[0x5] Definition oval:org.mitre.oval:def:11363 has been added to the OVAL Repository.

[0x6] Definition oval:org.mitre.oval:def:8280 has been added to the OVAL Repository.

[0x7] Definition oval:org.mitre.oval:def:2106 has been added to the OVAL Repository.

[0x8] Definition oval:org.mitre.oval:def:8999 has been added to the OVAL Repository.

[0x9] Definition oval:org.mitre.oval:def:8604 has been added to the OVAL Repository.

[0xA] Definition oval:org.mitre.oval:def:8310 has been added to the OVAL Repository.

CSOONLINE.com - Emergency Preparedness

[0x1] What the Gulf Oil Spill can teach CIOs about disasters

[0x2] Business continuity planning still on the upswing, says study

[0x3] Business continuity, not data breaches, a top concern for tech firms

[0x4] Travel Security: What to Pack to Survive a Natural Disaster

[0x5] Massive Storms Don't Halt D.C. IT Ops

[0x6] IT Warned: Prepare Network for Super Bowl Monday

[0x7] DDoS Attacks Are Back (and Bigger Than Before)

[0x8] Lack of Telework Preparedness Puts Business Continuity in Danger?

[0x9] How to Perform a Disaster Recovery Business Impact Analysis

[0xA] Most Businesses READY for Flu Pandemic?

EliteHackers.info Discussion Forums

EliteHackers.info has a large memberbase on our forums. We also have a files database, a text & tutorials archive. There is also a proxy list section as well as our ports list database.

[0x1] Best first language?

[0x2] C Login FTP

[0x3] C function help for begginer

[0x4] Time spent.

[0x5] Favorite Application or Software

[0x6] EH Chat Help

[0x7] Great Encryptors???

[0x8] Brute Force Attack Method

[0x9] hacker help

[0xA] london

StoneBlog.stonesoft.com

Share knowledge about StoneGate

[0x1] Twenty Ten!

[0x2] The power of custom access rules in SSL VPN

[0x3] U.S. Federal Cyber Reforms -> Right Direction Finally

[0x4] SSL VPN and Windows Integrated Login

[0x5] Black Hat 2010 Security Tip #3

[0x6] Black Hat 2010 Security Tip #2

[0x7] Black Hat 2010 Security Tip #1

[0x8] StoneGate SSL VPN and Salesforce.com: I got a ticket to ride…

[0x9] Stonesoft at Black Hat 2010

[0xA] StoneGate SSL VPN and Microsoft ADFS 2.0: SAML is beautiful!

Light Blue Touchpaper

Security Research, Computer Laboratory, University of Cambridge

[0x1] Capsicum: practical capabilities for UNIX

[0x2] Passwords in the wild, part IV: the future

[0x3] Passwords in the wild, part III: password standards for the Web

[0x4] Passwords in the wild, part II: failures in the market

[0x5] Passwords in the wild, part I: the gap between theory and implementation

[0x6] Who controls the off switch?

[0x7] Security and Human Behaviour 2010

[0x8] Database state – latest!

[0x9] Workshop on the economics of information security 2010

[0xA] A very rapid betrayal

F.A.T.

Release early, often, and w/ rap music.

[0x1] GML Syntax Validator

[0x2] The GML 1,200 Euro Prize

[0x3] GML DOT COM!!!

[0x4] 000000book 1.2: More Tags In More Places

[0x5] Graffiti Analysis 3.0 Is Here

[0x6] GML Week Part II Begins!!!!

[0x7] TELE-INTERNET – The 2010 Ars Electronica Internet Shop!

[0x8] WPFolio 1.6 beta release

[0x9] OPEN SOURCE TORTURE

[0xA] 15 Pieces of Papers Under Creative Commons License (Attribution Non-Commercial Share Alike)

Infosec Island Latest Articles

Adrift in Threats? Come Ashore!

[0x1] Do You Really Need Identity Theft Protection?

[0x2] Geospatial Cloud Computing in Support of National Policy

[0x3] Asia Just Does Not Get PCI

[0x4] Apple Ping'd By Spam - They Didn't See This Coming?

[0x5] Web Proxies and NetBIOS Targeted by Hackers

[0x6] Does Confidentiality Still Matter?

[0x7] Honeynet Log Challenge: Log Mysteries

[0x8] Is Your Kid Ready for Email?

[0x9] A Viable Solution to Skimming and Point of Sale Attacks

[0xA] Bulletproof Hosting: The Path Forward

ASTALAVISTA Forum Feed

[0x1] Very Good Day All

[0x2] Hello All

[0x3] Whats Crackin!

[0x4] Wireless Issues

[0x5] Black Berry Storm 9530 Unlocking.

[0x6] New 'kraken' Gsm-Cracking Software

[0x7] Is This Possible?

[0x8] Hack Wireless Router

[0x9] Help In Usb Modem Unlocking

[0xA] Helllo

Latest Secunia Blog Entries

Secunia collects, evaluates, verifies, and analyses vulnerability information.

[0x1] Secunia PSI 2.0 Auto Updates: A flying start and interesting numbers!

[0x2] Secunia releases update to the Corporate Software Inspector solution

[0x3] Secunia CSI 4.1 - enhanced reporting, new features, and integration with Secunia PSI

[0x4] Auto Update your Programs - Secunia PSI 2.0 Public Beta

[0x5] The free Secunia PSI 2.0 with Auto Update now in public beta – join and make a difference!

[0x6] Secunia releases the official, verified list regarding the Windows Applications Insecure Library Loading issue

[0x7] Frost & Sullivan Recognizes the Value Secunia Provides Its Customers through Vulnerability Research and Intelligence Services

[0x8] Microsoft Windows Insecure Library Loading

[0x9] An alarming trend for end-user security

[0xA] Secunia Awarded 2010 Global Frost & Sullivan Award for Customer Value Enhancement

ARN Security

ARN Security

[0x1] WikiLeaks founder Assange questioned by Swedish police

[0x2] Webroot calls for managed service providers

[0x3] M.Tech toughens firewalls with Tufin

[0x4] WhiteGold splits with AirTight after lacklustre sales

[0x5] Wavelink to distribute AirTight Networks

[0x6] uTorrent patches application against DLL vulnerability

[0x7] Intel eyed McAfee for years, Gelsinger says

[0x8] 1-in-4 worms spread through infected USB devices

[0x9] Scammers hit Twitter, Facebook, send free iPad spam

[0xA] Adobe fixes 20 vulnerabilities in Shockwave Player

[H]ardOCP News/Article Feed

News/Article Feed for [H]ardOCP

[0x1] State Reviewing Massive Computer Meltdown

[0x2] Steve Jobs: iTunes 10 Icon Does Not 'Suck'

[0x3] [H]ardware Round-Up II

[0x4] Texas Opens Antitrust Case Against Google

[0x5] [H]ot Deals

[0x6] Samsung Galaxy Tab on Video

[0x7] Join The [H] Folding Team!

[0x8] Gaming [H]eadlines

[0x9] Duke Nukem Forever Confirmed?

[0xA] Silicon Oxide Circuits Break Barrier

LinuxSecurity.com: Fedora Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Review: The Official Ubuntu Book

[0x3] Fedora 10 ruby-1.8.6.368-2.fc10

[0x4] Fedora 12 moodle-1.9.7-1.fc12

[0x5] Fedora 12 ntp-4.2.4p8-1.fc12

[0x6] Fedora 10 moodle-1.9.7-1.fc10

[0x7] Fedora 12 kernel-2.6.31.6-166.fc12

[0x8] Fedora 10 httpd-2.2.14-1.fc10

[0x9] Fedora 12 nss-util-3.12.5-1.fc12.1

[0xA] Fedora 10 rubygem-actionpack-2.1.1-5.fc10

CSOONLINE.com - Data Protection

[0x1] Women ace Defcon social engineering test

[0x2] For security, Facebook adds remote logout

[0x3] What security can learn from the $15M Sprint employee breach

[0x4] As Earl Looms, Tips to Batten Down IT

[0x5] Discover gets $5M from Heartland for breach

[0x6] DLL hijacking attacks continue

[0x7] Novell rolls out cloud security service

[0x8] Hurricane Earl may test IT teleworkers

[0x9] Google disputes bug patching report

[0xA] Organizing sensitive data in the cloud

Lifedork

still GeeX? still SuX!

[0x1] a face book friend has hidden their profile

[0x2] personal photo facebook on profile pubbloc

[0x3] how to view hidden pictures of a friend on facebook

[0x4] The SHOCKING Hidden Message In The Google Logo! You will not believe

[0x5] facebookpicturs

[0x6] amis router wireless hack

[0x7] how to see private picture in facebook

[0x8] download backtrack 4 iso compressd

[0x9] Hacking Wireless Tutorial ??????

[0xA] admin password on shy router

Security Database Tools Watch

[0x1] Complemento v0.7.6 - Collection of Tools

[0x2] MetaGoofil v1.4b released

[0x3] Suricata v0.9 RC1 released

[0x4] Xplico v0.5.7 released

[0x5] iScanner v0.5 released - Malicious codes scanner

[0x6] WebTest 1.2.1 - Testing Web Application with Python

[0x7] SQLNinja v0.2.5 released!

[0x8] WireShark 1.2.8 released

[0x9] fuu v0.1 Beta - [F]aster [U]niversal [U]npacker

[0xA] Lansweeper v4.0 released

Security Forums

Security Forums Dot Com :: Share Your Knowledge

[0x1] Is this a new attack ? Flash

[0x2] Rogue DNS interferes with VPN access

[0x3] Database Problem In Sql 7

[0x4] Persistent SQL injection attempts

[0x5] intenet problems

[0x6] How to remove Trojan Horse?

[0x7] Question with passwords

[0x8] Logging in local vs Domain

[0x9] Delegation - Computer Objects - Help

[0xA] Boot XP into Internet Explorer

www.derkeiler.com: Pen-Test

Pen-Test

[0x1] IBWAS10

[0x2] Pentest Criteria

[0x3] nullcon Goa dwitiya (2.0) Call For Papers

[0x4] Pentestn ASP website with tinymce

[0x5] Pentest - ISA server

[0x6] The Smarter Safer Better Seminar Series

[0x7] OpenDLP 0.2.2 VirtualBox VM released

[0x8] =?UTF-8?B?dDLigLIxMCBDaGFsbGVuZ2UgdG8gYmUgcmVsZWFzZWQgMjAxMC0wOC0=?= =?UTF-8?B?MjggMTA6MDAgR

[0x9] WAF Testing..suggestions??

[0xA] [HITB-Announce] HITB2010 SIGNINT Sessions

Internet Security News - SecurityProNews

Breaking news and top stories from the world of Internet security.

[0x1] Facebook Becomes A Favorite Target Of Phishers

[0x2] Google Goes After Impersonator Scammers

[0x3] Senate Uncovers Online Credit Card Tricks

[0x4] McAfee: Cyberwarfare A Big Threat

[0x5] ICSA Labs Finds Flaws In New Security Products

[0x6] Nigeria Announces Early Results Of Anti-Scammer Initiative

[0x7] MessageLabs Names Most- (And Least-) Spammed States

[0x8] Enormous Malware Archive Creates Stir

[0x9] Avsim Hacker (Maybe) Brought Before Cops

[0xA] Email Password Hackers Present Real Threat

Network World on Wireless Security

The latest wireless security news and analysis from NetworkWorld.com.

[0x1] Bluetooth at heart of gas station credit-card scam

[0x2] Wireless security myths 2010

[0x3] How to Set Up a Virtual Private Network

[0x4] How to Stay Safe on Public Wi-Fi

[0x5] Cisco Unveils AnyConnect Secure Mobility

[0x6] How Wi-Fi attackers are poisoning Web browsers

[0x7] Pros and Cons of Windows 7 Security

[0x8] MS Provides Guidance on Windows 7 Zero-Day Vulnerability

[0x9] Shifting mobile cost to employees? Think twice

[0xA] Shifting mobile cost to employees? Think twice

Security Tools News & Tips

Just another WordPress weblog

[0x1] Microsoft Security Essentials

[0x2] NSMXpress

[0x3] Korea to train 3,000 ‘cyber sheriffs’

[0x4] FortiClient standard edition

[0x5] 10 Solid Tips to Safeguard Your Facebook Privacy

[0x6] K9 Web Protection

[0x7] Check Point Power-1 Appliances

[0x8] Wordpress blogs hacked – Upgrade your Wordpress NOW!

[0x9] Cisco ASA 5500 Series Firewall

[0xA] (IN)SECURE Magazine Issue 22 is out

CSOONLINE.com - Investigations/Forensics

[0x1] Whodunnit? 5 free or cheap tools to manage investigations

[0x2] What it's like to be grilled by the Secret Service

[0x3] The essential retail security reader

[0x4] Covert investigations 3: covert surveillance setup

[0x5] Arrogant lawyers: the greatest threat to your organization

[0x6] Forensic tool will advance data recovery

[0x7] 5 top tactics in retail theft today

[0x8] Covert Investigations 2: Video Recording Devices

[0x9] Spy tools: What private investigators use to sleuth

[0xA] Financial fraud: How investigators work to combat data theft

OSF Data Loss - The Blotter

This feed contains the latest blotter articles posted to datalossdb.org.

[0x1] KCI working to contain employee data breach

[0x2] Reasons to Freeze Your Credit

[0x3] Snoop Dogg To Fight Cybercrime And Identity Theft With Rap Contest

[0x4] Miami man pleads guilty in ID theft case

[0x5] Woman Admits Stealing Identity For Breast Implants

[0x6] GPS Tracking, Identity Theft: Hot Trends

[0x7] Starbucks job applications used in Identity Theft

[0x8] Accused Identity Thief: "You've Got Me By The Balls"

[0x9] Laptop with Social Security numbers stolen from UConn West Hartford

[0xA] How to Do What Identity Theft Protection Companies Do...for FREE

blog ntic de revolunet

Blog des Nouvelles Technologies de l'Information et de la Communication

[0x1] Google apps tips

[0x2] Recrutement développeur PHP sur Paris

[0x3] Symbian : l’open source comme ultime recours ?

[0x4] Appels illimités vers le Maroc

[0x5] Astuces Django

[0x6] Bien démarrer avec django

[0x7] Premiers pas Git : team workflow

[0x8] Test du Sanyo Xacti CA9

[0x9] Outrage

[0xA] Test QNAP TS409 Pro

SANS Internet Storm Center, InfoCON: green

[0x1] Infocon: green

[0x2] Apple Releases Two Security Updates (One for OSX, One for iTunes) : http://support.apple.com/kb/HT4312 and http://support.apple.com/kb/HT4328, (Fri, Sep 3rd)

[0x3] Microsoft EMETv2 released, (Thu, Sep 2nd)

[0x4] SDF, please!, (Thu, Sep 2nd)

[0x5] Month of Undisclosed 0-day Bugs, (Wed, Sep 1st)

[0x6] Microsoft issues updates to sysinternals ProcDump and Process Monitor: http://blogs.technet.com/b/sysinternals/archive/2010/08/30/updates-procdump-process-monitor-and-a-new-mark-s-blog-post.aspx, (Wed, Sep 1st)

[0x7] VMWARE releases 2 security advisories for ESX Service Console: http://lists.vmware.com/pipermail/security-announce/2010/000103.html and http://lists.vmware.com/pipermail/security-announce/2010/000104.html, (Wed, Sep 1st)

[0x8] Interesting PHP injection, (Tue, Aug 31st)

[0x9] Abandoned free email accounts, (Sun, Aug 29th)

[0xA] Apple QuickTime potential vulnerability/backdoor, (Mon, Aug 30th)

Securelist / Descriptions

[0x1] P2P-Worm.Win32.BlackControl.g

[0x2] Backdoor.Win32.Bredolab.eua

[0x3] Trojan.Win32.Oficla.w

[0x4] Trojan-PSW.Win32.Qbot.mk

[0x5] Trojan.Win32.Vilsel.ato

[0x6] Trojan-Banker.Win32.Banz.cri

[0x7] Virus.Win32.Virut.ce

[0x8] Virus.Win32.Sality.ag

[0x9] Trojan-Downloader.JS.Gumblar.x

[0xA] Backdoor.Win32.Clampi.a

Ubergizmo

Ubergizmo is a top consumer electronics news and reviews site.

[0x1] Google Wave Offered As 'Wave in a Box'

[0x2] Laser Powered Helicopter Paves The Way For Space Elevators

[0x3] iOS Bests Linux to Become Third Popular Browsing Platform

[0x4] New Jersey Planning to Add WiFi to Trains

[0x5] Samsung's 50-Inch 3D Plasma TV Breaks $1,000 Price Barrier

[0x6] Nikon Head Hints at Miniaturized Professional Camera

[0x7] Toshiba Introduces Lumileo P100 Pico Projector

[0x8] Sophisticated New Malware Shows Fake Malware Detection Warning

[0x9] Sony Bloggie Touch Now With Touchscreen Viewfinder

[0xA] Toshiba Announces New Camileo S30, P20 Pocket Camcorders

Unpersons

You are not alone...

[0x1] It’s not me, it’s you…

[0x2] Episode 032

[0x3] Episode 031

[0x4] We’re not Dead Yet!

[0x5] Episode 030

[0x6] Episode 029

[0x7] Episode 028

[0x8] Episode 027

[0x9] Episodes 27 28 and 29

[0xA] Holy DEFCON, Batman!

CSOONLINE.com - IT Audit

[0x1] Where are all these files coming from?

[0x2] Claiming PCI or any other compliance - daily

[0x3] Code Security: MidAmerican Energy's top priority after SQL injection attacks

[0x4] Case Study: Making E-discovery an Internal Function

[0x5] RSA 2010: Why 41 Percent of You Would Fail a PCI Audit

[0x6] Five Security Missteps Made in the Name of Compliance

[0x7] Report: Layer 7 Increasingly Under DDoS Gun

[0x8] Internal Investigations: The Basics

[0x9] The Great PCI Security Debate of 2010: Transcribed

[0xA] PCI DSS, Come Forward and Be Judged

Networking & Infrastructure White Papers

Hardware, Linux, Networking, Security, Storage, UNIX, Windows, and Wireless White Papers

[0x1] Insiders' Guide to Evaluating Remote Control Software

[0x2] The Learning Organization Goes Digital

[0x3] 10 Tips - IT Training Support

[0x4] How to Make Your IT Staff Smarter

[0x5] Improving Application Development with Digital Libraries

[0x6] Working Green with Digital Libraries - How it Can Help

[0x7] Minimizing Technology Project Delays with Digital Libraries

[0x8] How VMware Virtualization Right-sizes IT Infrastructure to Reduce Power Consumption

[0x9] Reduce Energy Costs and Go Green with VMware Virtualization

[0xA] VMware Customer Success: Consolidating Data Centers at First American

Social-Engineer.Org » Blog

Security Through Education

[0x1] Cyber Stalking and Smart Phones – Making Social Engineering Easier

[0x2] A New Era of Security Awareness Training

[0x3] Social-Engineer Breaks a Defcon Record

[0x4] Social Engineering – Fact versus Fiction

[0x5] Social-Engineer.Org CTF Update – Awareness Abounds

[0x6] Defcon 18 Social Engineer CTF Update

[0x7] The Pizza Delivery Man is a Social Engineer

[0x8] Social Engineering CTF Update

[0x9] Social Engineering being used by Child Predators

[0xA] The Social Engineering CTF – How Strong is Your Schmooze

Aladdin Knowledge Systems Latest eToken Press Releases

Aladdin Knowledge Systems Latest eToken Press Releases - RSS Feed

[0x1] Ontario's York Regional Police Meet Canadian Government Regulations with Aladdin eToken

[0x2] Russian Bank Secures Online Banking with Aladdin Authentication

[0x3] Aladdin eToken Solidifies Its Position in Government Sector on Carahsoft GSA Schedule

[0x4] Aladdin eToken and Aladdin SafeWord are Verified as Citrix Ready

[0x5] Aladdin and Wyse Partner to Secure Virtual Desktops

[0x6] Korea's Largest Bank Deploys 5,000 Aladdin eToken Authentication Devices

[0x7] Aladdin Secures Transactions for China's Largest Online Financial Information and Services Provider

[0x8] Aladdin eToken Debuts New Generation of Strong Authentication Solutions

[0x9] Toronto-Area Police Secure Data and Meet CPIC Regulations with Aladdin eToken

[0xA] Secure Computing Named Reader Trust Finalist in SC Magazine Award Program and Best of 2006 in Three Categories

Microsoft Security Content: Comprehensive Edition

Microsoft Security Content: Comprehensive Edition

[0x1] Microsoft Security Bulletin Summary for August 2010

[0x2] MS10-056 - Critical: Vulnerabilities in Microsoft Office Word Could Allow Remote Code Execution (2269638) - Version:1.3

[0x3] MS10-049 - Critical: Vulnerabilities in SChannel could allow Remote Code Execution (980436) - Version:1.1

[0x4] Microsoft Security Advisory (2269637): Insecure Library Loading Could Allow Remote Code Execution

[0x5] MS10-054 - Critical: Vulnerabilities in SMB Server Could Allow Remote Code Execution (982214) - Version:1.2

[0x6] MS10-046 - Critical: Vulnerability in Windows Shell Could Allow Remote Code Execution (2286198) - Version:1.2

[0x7] MS10-058 - Important: Vulnerabilities in TCP/IP Could Allow Elevation of Privilege (978886) - Version:1.1

[0x8] MS10-055 - Critical: Vulnerability in Cinepak Codec Could Allow Remote Code Execution (982665) - Version:1.1

[0x9] Microsoft Security Bulletin Summary for March 2010

[0xA] MS10-060 - Critical: Vulnerabilities in the Microsoft .NET Common Language Runtime and in Microsoft Silverlight Could Allow Remote Code Execution (2265906) - Version:1.1

HolisticInfoSec.org

The HolisticInfoSec.org blog includes follow-up on previously written articles and research, as well as research and rants. While the goal is promoting standards, simplicity, and efficiency in achieving holistic information security, we occasionally rally against industry shortcoming where necessary.

[0x1] Is Zeus an APT, or v3?

[0x2] Suricata in toolsmith: meet the meerkat

[0x3] Verizon Data Breach Report & OWASP Top 10's #6

[0x4] ISSA Members: Connect regarding IR in cloud & complex environments

[0x5] Messenger Abuser Malware Tactics

[0x6] CSRF flaws that pack a punch

[0x7] ADMIN Magazine article: Splendid Splunk

[0x8] Book Review: ModSecurity Handbook

[0x9] Web Security Tools²: skipfish and iScanner

[0xA] CSRF: Six Degrees of Kevin Beaver (or at least his printer)

NovaInfosecPortal.com

News, events, & resources for infosec professionals in NoVA, DC, & MD

[0x1] Top 3 NoVA Infosec Blog Posts of the Week

[0x2] Grecs’ Weekly Infosec Ramblings for 2010-09-02

[0x3] Where You Want to Be This Week for 2010-08-30

[0x4] Grecs’ Weekly Infosec Ramblings for 2010-08-26

[0x5] Top 3 NoVA Infosec Blog Posts of the Week

[0x6] Where You Want to Be This Week for 2010-08-23

[0x7] Grecs’ Weekly Infosec Ramblings for 2010-08-19

[0x8] Top 3 NoVA Infosec Blog Posts of the Week

[0x9] Upcoming Conferences for August, September, and October

[0xA] Where You Want to Be This Week for 2010-08-16

PaulDotCom

[0x1] PaulDotCom Security Weekly - Episode 208 Part 2 - August 26, 2010

[0x2] Dan York & Josh Wright live tomorrow - also win Dan's book!

[0x3] PaulDotCom Security Weekly - Episode 208 Part 1 - August 26, 2010

[0x4] New Windows Meterpreter Search Functionality

[0x5] Watch Dan Kaminsky restart the internet LIVE Thursday night.

[0x6] PaulDotCom - Security Weekly - Episode 207 part 2 - August 19th, 2010

[0x7] PaulDotCom - Security Weekly - Episode 207 part 1 - August 19th 2010

[0x8] PaulDotCom - Security Weekly - Episode 206 Part 2 - August 12th 2010

[0x9] Catch Chris Paget & Ron Bowes live tomorrow night!

[0xA] PaulDotCom - Security Weekly - Episode 206 - August 12th 2010

XSSed syndication

You are welcome to syndicate and share xssed.com contents

[0x1] www.facebook.com Script Insertion

[0x2] ricerca.virgilio.it XSS

[0x3] www.bizrate.com Redirect

[0x4] bt.com Redirect

[0x5] cloudprotection.pandasecurity.com XSS

[0x6] mediapolis.rai.it XSS

[0x7] www.saintcorporation.com XSS

[0x8] sched.blackhat.com XSS

[0x9] www.godaddy.com XSS

[0xA] searchsecuritychannel.techtarget.com XSS

InformationWeek Analytics Weblog

Here you'll find observations, anecdotes, and analysis from our experienced staff of reporters and editors, with links to stories, surveys and other content that appear on InformationWeek.com, TechWeb.com, and many other points on the Web. We welcome discussion, and invite you to share your opinions and thoughts. Please participate with us!

[0x1] HP Looks To Deny Dell Access To The Data Center

[0x2] HP Looks To Deny Dell Access To The Data Center

[0x3] Employee Lifetime Value

[0x4] InformationWeek's E-Health Record Buyer's Guide

[0x5] Google Docs Gets Smartquote Controls

[0x6] InformationWeek's RSS Feed is brought to you by

[0x7] With VDI, Local Disk Is A Thing Of The Past

[0x8] Hackers Unite!

[0x9] Will We Still Be Building Data Centers In 10 Years?

[0xA] Will Microsoft Win Back Virtualization With Windows 8 and HyperV 3?

Linux Techbits and hackery

A Simple blog debating good linux hacks, security and programming and general sysadministration..

[0x1] Argh blow up parts..

[0x2] Happy Sysadmin appreciation day

[0x3] choosing a web language...

[0x4] Epic fail ftw..

[0x5] found a bug?

[0x6] shellcodes more shellcode stuff.

[0x7] upcoming blog post..

[0x8] amd64/x86_64 shellcode..

[0x9] grabbing a table from a mysql backup...

[0xA] the squirrlemail hole..

The TSA Blog

Terrorists Evolve. Threats Evolve. Security Must Stay Ahead. You Play A Part.

[0x1] This blog has moved

[0x2] Traveling With Airbags

[0x3] Advanced Imaging Technology Off To a Great Start

[0x4] Response to: TSA to Download Your iTunes?

[0x5] Federal Air Marshals on Flight 663

[0x6] Traveling with E-readers, Netbooks, and Other Small Gadgets (Including the iPad)

[0x7] Advanced Imaging Technology - Yes, It's Worth It

[0x8] Helping Wounded Warriors

[0x9] Advanced Imaging Technology: "Radiation Risk Tiny"

[0xA] Live Aviation Security Chat with Secretary Napolitano on Facebook 3/9/10

Black Hat Announcements

Black Hat Digital Self Defense. Black Hat provides cutting edge content in the information and computer security field. Keep up to date with Black Hat presentations, announcements, and free content.

[0x1] Black Hat USA 2010 Training: Pentesting with Backtrack by Offensive Security

[0x2] Black Hat USA 2010 Training: Application Security: For Hackers and Developers

[0x3] Black Hat USA 2010 Training: Assaulting IPS

[0x4] Free Black Hat March Webcast - Pen Testing the Web with Firefox by Michael Schearer ("theprez98")

[0x5] Black Hat USA 2010 Registration Now Open!

[0x6] Black Hat USA 2010 Call for Papers Closes May 1

[0x7] Black Hat Europe 2010 Call for Papers Closes March 1

[0x8] Feb 18 Webcast

[0x9] Black Hat DC 2010 - News - Security chip that does encryption in PCs hacked

[0xA] Black Hat DC Keynote

Microsoft Sec Notification

Beware that MS often uses these security bulletins as marketing propaganda to downplay serious vulnerabilities in their products—note how most have a prominent and often-misleading "mitigating factors" section.

[0x1] Microsoft Security Bulletin Minor Revisions

[0x2] Microsoft Security Advisory Notification

[0x3] Microsoft Security Bulletin Minor Revisions

[0x4] Microsoft Security Bulletin Minor Revision

[0x5] Microsoft Security Advisory Notification

[0x6] Microsoft Security Bulletin Minor Revisions

[0x7] Microsoft Security Bulletin Minor Revisions

[0x8] Microsoft Security Advisory Notification

[0x9] Microsoft Security Bulletin Summary for August 2010

[0xA] Microsoft Security Bulletin Advance Notification for August 2010

Infosec Writers Latest Security Papers

Papers submitted by security professionals are published on the site and archived for readers. Categories include cryptography, E-mail security, exploitation, firewalls, forensics, honeypots, IDS, malware & wireless security.

[0x1] Experimental Review of IPSec Features to Enhance IP Security

[0x2] Cloud Computing – Storm Clouds or is it Smooth Flying?

[0x3] The Evolving World of Computer Security and Laws

[0x4] Web Access Management and Single Sign-On

[0x5] Reverse Honey Trap

[0x6] The Phishing Guide

[0x7] Shedding Light on Quantum Cryptography

[0x8] Securing a Virtual Environment

[0x9] Investigating the SANS/CWE Top 25 Most Dangerous Programming Errors List

[0xA] Hacking Tools & Techniques and How to Protect Your Network from Them

Kaspersky.com / All News

[0x1] Windows vulnerabilities prove a popular target for cybercriminals in August

[0x2] Spam in July: Facebook coming under increasing attack from phishers

[0x3] Kaspersky Lab detects new IM worms capable of spreading via almost all instant messengers

[0x4] Kaspersky PURE Receives Gold Award in Parental Control Systems Testing

[0x5] Kaspersky Lab detects new IM worms capable of spreading via almost all instant messengers

[0x6] Q2 2010: more than half a billion infection attempts

[0x7] Kaspersky Lab and Axigen Partner to Deliver Premium Email Security

[0x8] Kaspersky Internet Security 2011 and Kaspersky Anti-Virus 6.0 for Windows Workstations win VB100 awards for protection on Windows Vista Business Edition

[0x9] Kaspersky Internet Security 2011 and Kaspersky Anti-Virus 6.0 for Windows Workstations win VB100 awards for protection on Windows Vista Business Edition

[0xA] Kaspersky Lab and Axigen partnership to deliver premium email security

Moreover Technologies - Computer security news - 30 of 6457 returned

Moreover Technologies - Real-time news and blogs from thousands of sources

[0x1] Penny Stocks To Trade Now - Sponsored Link

[0x2] Snoop Dogg jumps on anti-cybercrime wagon

[0x3] Snoop Dogg jumps on anti-cybercrime wagon

[0x4] DHS to expand cybersecurity program for researchers

[0x5] Spammers inundate Apple's new social media service Ping

[0x6] News of the World faces fresh phone hacking charge

[0x7] How Cameron and the Standard tackle growing row over Coulson and phone hacking

[0x8] Spammers inundate Apple's new social media service Ping

[0x9] City cyber crime police station yet to start business

[0xA] Scientists view cybersecurity as an intimidating conundrum

Security Justice

Security Justice

[0x1] Security Justice Episode 27 – Social Engineering with Brian Brushwood from Scam School

[0x2] Security Justice Episode 26 – Interview with Joshua Abraham (@jabra), Dave Kennedy (@dave_re1ik) SET v0.6 and Arnold Palmer

[0x3] Security Justice Episode 25 – Interview with Rafal Los, THOTCON, AppSec Security Fail, Cyber what?

[0x4] Security Justice Episode 24 – Interview with Steve Ocepek from SpiderLabs, Post Notacon Updates

[0x5] Security Justice Live on Notacon Radio Tonight 11pm!

[0x6] Security Justice Episode 23 – Infosec vs. IT Audit, Froggy and Tyger, Myrcurial and Notacon

[0x7] Security Justice Episode 22 – Physical Security, Interview with a Locksmith

[0x8] Shmoocon and how to protect yourself from Shmooball attackers!

[0x9] Security Justice Episode 21 – Woot.com, Hack Challenge, @dave_rel1k and SET

[0xA] Security Justice Episode 20 – Shmoocon 2010 Interview with Bruce Potter (@gdead)

Casper Dik's Weblog

Casper Dik's Weblog

[0x1] OGP election

[0x2] NLOSUG: 26/10/2006 Dutch OpenSolaris User Group First Meeting

[0x3] Updated drivers: but only at www.opensolaris.org

[0x4] Small acpidrv update

[0x5] OpenSolaris User Group Meeting, Amsterdam, October 18th

[0x6] Laptop community live!

[0x7] Laptops

[0x8] First Installment (of frkit)

[0x9] User Credentials and all that

[0xA] Southpark Stdio

Wired: Threat Level

Kevin Poulsen and Ryan Singel's daily briefing on security, freedom and privacy in the wired and unwired world.

[0x1] ‘Evil’ Eric Schmidt Debuts in Video Targeting Google Privacy

[0x2] Murdoch Reporters’ Phone-Hacking Was Endemic, Victimized Hundreds

[0x3] Police Kill Hostage Taker Who Besieged Discovery Channel

[0x4] Attorney: Army Disabled Manning’s Weapon Prior to Leaks

[0x5] Pirate Bay Documentary in the Works

[0x6] Obama’s Commerce Secretary Talks Tough on Music Piracy

[0x7] Dead Codebreaker Was Linked to NSA Intercept Case

[0x8] Alleged WikiLeaks Leaker Hires Civilian Defense Attorney

[0x9] Second Newspaper Chain Joins Copyright Trolling Operation

[0xA] Alleged Carder ‘BadB’ Charged in $9 Million ATM Heist

SANS Information Security Reading Room

Last 25 Computer Security Papers added to the Reading Room

[0x1] SANS Network Security 2010

[0x2] Getting Owned By Malicious PDF - Analysis

[0x3] Mastering the Super Timeline With log2timeline

[0x4] The Afterglow effect and Peer 2 Peer networks

[0x5] Packer Analysis Report-Debugging and unpacking the NsPack 3.4 and 3.7 packer.

[0x6] Covert Channels

[0x7] Leveraging the Load Balancer to Fight DDoS

[0x8] Contracting for PCI DSS Compliance

[0x9] Measuring effectiveness in Information Security Controls

[0xA] Clash of the Titans: ZeuS v SpyEye

(IN)SECURE Magazine Notifications RSS

Notifications of new (IN)SECURE Magazine issues.

[0x1] (IN)SECURE Magazine Issue 27

[0x2] (IN)SECURE Magazine Issue 26

[0x3] (IN)SECURE Magazine Issue 25

[0x4] (IN)SECURE Magazine Issue 24

[0x5] (IN)SECURE Magazine Issue 23

[0x6] (IN)SECURE Magazine Issue 22

[0x7] (IN)SECURE Magazine Issue 21

[0x8] (IN)SECURE Magazine Issue 20

[0x9] (IN)SECURE Magazine Issue 19

[0xA] (IN)SECURE Magazine Issue 18

Department of Homeland Security News

Department of Homeland Security News

[0x1] Secretary Napolitano Announces Expansion of "If You See Something, Say Something" Campaign and New Information Sharing Partnership in Tennessee

[0x2] Statement by Deputy Press Secretary Matt Chandler on Pew Hispanic Center Report on Unauthorized Immigration Flows

[0x3] Secretary Napolitano's Remarks to the Air Line Pilots Association

[0x4] Progress in Implementing New Security Measures Along the Southwest Border

[0x5] Readout of Secretary Napolitano’s Visit to Mississippi

[0x6] Readout Of Secretary Napolitano's Visit To Chicago

[0x7] Readout of Secretary Napolitano's Visit to Montana

[0x8] Secretary Napolitano Announces Over $25 Million in Additional Gulf Coast Rebuilding Projects

[0x9] Statement on Secretary Napolitano's Upcoming Visit to Montana and Chicago

[0xA] Secretary Napolitano Announces Secure Communities Deployment to All Southwest Border Counties, Facilitating Identification and Removal of Convicted Criminal Aliens

Top 10 Latest Virus Threats from Aladdin

Virus List from Aladdin - RSS Feed

[0x1] Win32.Gimmiv.a - Updated on: 10/26/2008 - Threat Level: Low

[0x2] Win32.ACVE.o - Updated on: 10/2/2008 - Threat Level: Low

[0x3] Win32.Adload.aro - Updated on: 10/2/2008 - Threat Level: Low

[0x4] Win32.Adload.asj - Updated on: 10/2/2008 - Threat Level: Low

[0x5] Win32.Adload.ask - Updated on: 10/2/2008 - Threat Level: Low

[0x6] Win32.Adload.asn - Updated on: 10/2/2008 - Threat Level: Low

[0x7] Win32.Adload.asq - Updated on: 10/2/2008 - Threat Level: Low

[0x8] Win32.Adload.atq - Updated on: 10/2/2008 - Threat Level: Low

[0x9] Win32.Adload.atz - Updated on: 10/2/2008 - Threat Level: Low

[0xA] Win32.Adload.aub - Updated on: 10/2/2008 - Threat Level: Low

Xatrix Security Advisories

Xatrix Security Advisories

[0x1] Ubuntu Linux: Firefox vulnerabilities

[0x2] Red Hat: Ruby safe-level vulnerability

[0x3] Red Hat: Seamonkey critical security vulnerabilities

[0x4] Debian: Drupal several remote vulnerabilities

[0x5] Debian: Kernel local race condition

[0x6] SUSE: Kernel local privilege escalation

[0x7] Ubuntu Linux: Update introduced regression

[0x8] Ubuntu Linux: Mozilla-Thunderbird vulnerabilities

[0x9] Mandriva: Perl log flaw

[0xA] Ubuntu Linux: Mozilla various vulnerabilities

SecureLexicon

[0x1] Slimware – Applied Crowd-Sourcing in the Cloud

[0x2] BlackHat career advice from Kushner and Murray

[0x3] Visualize- A fresh perspective from NetWitness

[0x4] Spying on Hackers – A BlackHat Imperva Interview

[0x5] DefCon interview with Dasient’s Neil Daswani

[0x6] BlackHat 2010 Interview – Preview of Dasient’s ModAntiMalware presentation

[0x7] BlackHat 2010 Interview – Logging and Cloud Security

[0x8] BlackHat 2010 Interview – Security of Unstructured Data

[0x9] Ninja NetWorks badge 2010 – A preview

[0xA] Dasient on the evolution of Malware

Subreption Blog

A surreptitious look over the work of an innovative startup.

[0x1] Why Linux security has failed (for the past 10 years)

[0x2] KERNHEAP for the Linux kernel 2.6 released

[0x3] Runtime binary loading via the dynamic loader on Apple Mac OS X

[0x4] Minor security fixes for Pyblosxom

[0x5] Apple Mac OS X 10.4 temp_patch_ptrace(): Nonsense in kernel-land

[0x6] Linux Kernel Silent Patching: VMI write_ldt_entry() privilege escalation

[0x7] Custom shellcode and return-to-libc on Mac OS X

[0x8] Marshal and Native API bridging on Microsoft Windows (NT)

[0x9] Pyblosxom and mod_wsgi benchmark

[0xA] PatchDiff 2 by Tenable Security

Jeremy's Brain Dump

Some worthless information from my brain.

[0x1] FISMA

[0x2] Access Controls Article

[0x3] PMP Equations

[0x4] Math

[0x5] What is security

[0x6] New Hosting

[0x7] WordPress 2.3 and Feedburn Widget

[0x8] So, what is a CISSP anyways?

[0x9] Upgrading the OS on my MythBox

[0xA] Blogs vs. Forums

McAfee Avert Labs

Cutting edge security research as it happens.......

[0x1] How Much Does My Identity Cost? (the Sequel)

[0x2] Zeus Botnet Attacks via FedEx Scam

[0x3] Labs Releases Whitepaper on Cooperative Anti-Malware on Endpoint and Gateway

[0x4] iPhone OS – Safe again?

[0x5] Newegg Password Reset Scam: a Harbinger of Threats to Come?

[0x6] Insecure Library Loading in OS and Applications

[0x7] Three Strikes to Latest Phishing Scam

[0x8] How Much Does My Identity Cost?

[0x9] Fraud Strikes U.S. Travel Authorization Agency

[0xA] New Wave of Zbot Trojan

pSeries Tech Talk Forums

Free resource for IBM pSeries support, AIX support, Power Linux support and the latest information on IBM pSeries server virtualization.

[0x1] Sam0917 Intro

[0x2] crazy_power Intro

[0x3] 7025 6f1 problem

[0x4] jonathag Intro

[0x5] Tivoli BAClient on AIX Servers

[0x6] stringsinaction Intro

[0x7] earvin740 Intro

[0x8] lektmeu Intro

[0x9] ndujovic Intro

[0xA] jaredmack188 Intro

pSeries Tech Talk Forums - AIX for POWER Systems

Discuss AIX for POWER Systems. Support for AIX commands, backup and restore and AIX shell scripts.

[0x1] RSS Feed Password expiry

[0x2] RSS Feed Three locks for your SSH door

[0x3] AIX v5.3 From AIX 5.3 to 6

[0x4] RSS Feed Heterogeneous IPSec solution between AIX and Windows

[0x5] AIX v5.3 Mysql performance compared to Linux/Intel

[0x6] AIX v6.1 GDB 7.1 compiling Error on AIX 6.1

[0x7] AIX v5.2 HACMP disk replacement

[0x8] RSS Feed Introduction to PowerHA

[0x9] AIX v5.3 PV id

[0xA] RSS Feed Speaking UNIX: Bazaar

Hack a Day

Fresh hacks every day

[0x1] C Sharp Development 101 – A Tutorial Series

[0x2] The Spindicator

[0x3] EEVblog dissects a kindle 3

[0x4] Controlling the power of a flash with a tv remote

[0x5] Trossen Robotics holding another contest

[0x6] Using an NES controller on an Android phone

[0x7] Car computer requires PIN for ignition

[0x8] Meter clock using the TI Launchpad

[0x9] Firmware hacking on Behringer midi devices

[0xA] Meat smoker texts you when it is done

Peter Guerra

All about security

[0x1] Malware implicated in fatal Spanair plane crash

[0x2] Cybersecurity and National Policy

[0x3] How Robber Barons hijacked the telegraph system

[0x4] The Bedazzler

[0x5] iPhone fix

[0x6] Twitter for Botnet control

[0x7] BlackHat 2009 Presentation

[0x8] SLE, Quantitative versus Qualitative Risk, and Finance

[0x9] BlackHat 2009

[0xA] White House Cyber Security Review is out

CSOONLINE.com - Identity Theft Prevention

[0x1] Hackers find new target in payroll processing

[0x2] Credit and debit card skimming: Look out for fraudulent readers at gas stations

[0x3] Brand protection and abuse: Keeping your company image safe on social media

[0x4] Lifelock employee data leaked to web

[0x5] Password Application Tricks Fraudsters

[0x6] Eight Indicted for $9 Million Hack

[0x7] Delayed Again: Red Flags Rule Deadline Now June 1, 2010

[0x8] A Look At Stolen Hotmail Data Finds Simple Passwords

[0x9] School Boards Hit with Cash-Stealing Trojan

[0xA] News Flash: Data Debauchery That Happens in Vegas Doesn't Stay There

Virus and worm news from Network World

The latest virus and worm news and analysis from NetworkWorld.com.

[0x1] Virtualize your browser to prevent drive-by malware attacks

[0x2] Germany to launch antibotnet program for consumers

[0x3] Security-as-a-service growing

[0x4] Low-threat worm caused 'most significant breach' of U.S. military net

[0x5] Google Patches Security Holes in Chrome Browser

[0x6] NSS Labs: Testing shows most AV suites fail against exploits

[0x7] How Did My Protected PC Get Infected?

[0x8] Malware Call to Arms: Threat at All-Time High and Rising

[0x9] SniperSpy lets you keep a close eye on remote Macs

[0xA] Reliable Encryption for the Rest of Us

Hackers Center Blogs

[0x1] Not Another Penetration testing course

[0x2] Data Related to Kneber Botnet breach recovered by Netwitness

[0x3] Building security into business processes

[0x4] Spy Eye tool kit goes after Zeus botnet

[0x5] Black Hat: Researcher claims hack of chip used to secure computers, smartcards

[0x6] China steals Google's data

[0x7] PortSwigger.net - web application security

[0x8] eLearnSecurity : Breaking into system is no more enough

[0x9] NIST releases Security Content Automation Protocol for FISMA

[0xA] A zero-day flaw in the TLS and SSL protocols, which are commonly used to encrypt web pages, has been made public.

TraverseCode.com

[0x1] Vulnerability in Microsoft Virtual PC

[0x2] |From: PDF@Exploit| |To: Zeus@Trojan| |Subject: Steals Bank Credentials|

[0x3] Don’t press F1 key in Windows XP

[0x4] Traversing a ‘DLL’: Financial Crimeware (Banker)

[0x5] Orkut Phishing using Blogspot account

[0x6] Social Engineering – Fake TwitterIM Download

[0x7] Scam Mail targeting Indian users “Tax Refund Online Form”

[0x8] Chase Bank Phishing scam Mail

[0x9] Traversing a Financial Crimeware which uses Proxy Technique

[0xA] 1st Rogue Mail in 2010

Peter Van Eeckhoutte's Blog

:: [Knowledge is not an object, it´s a flow] ::

[0x1] DLL Hijacking (KB 2269637) – the unofficial list

[0x2] Exploit notes – win32 eggs-to-omelet

[0x3] Cisco VoIP Phones – A Hackers Perspective

[0x4] WATOBO – the unofficial manual

[0x5] How strong is your fu 2 – the report

[0x6] How strong is your fu : Hacking for charity

[0x7] Exploit writing tutorial part 10 : Chaining DEP with ROP – the Rubik’s[TM] Cube

[0x8] Offensive Security Hacking Tournament – How strong was my fu ?

[0x9] corelanc0d3r interviewed by Slo-Tech

[0xA] corelanc0d3r interviewed by CubilFelino Security Research Labs

Slashdot

News for nerds, stuff that matters

[0x1] Google Wave To Live On As 'Wave In a Box'

[0x2] NASA Preps Closest-Ever Sun Mission

[0x3] Software (and Appropriate Input Device) For a Toddler?

[0x4] Brazil Considering Legalizing File Sharing

[0x5] Game Publishers Using Stealth P2P Clients

[0x6] 2010 May Be the First Year YouTube Turns a Profit

[0x7] Winnie-the-Pooh Parodied In Wookie-the-Chew

[0x8] VISA Pulls Plug On ePassporte, Porn Webmasters

[0x9] New and Old Experiments Combine To Help the Search For Life On Mars

[0xA] NVIDIA Announces New Line of Fermi-Based Mobile Chips

dropsafe

security, software, cycles, food, drink, life...

[0x1] Somebody asked what’s so scary about RPZ?

[0x2] Demo Password Cracker in 1 line of Perl

[0x3] Eileen’s Baked Apple Recipe

[0x4] Regarding the police’s use of “fluid debonding agents” for #superglue protestors

[0x5] #TFL has a “Head of Behaviour Change” job role?

[0x6] political correctness question

[0x7] NYTimes damning #WikiLeaks by faint acknowledgement of quashed rape warrant?

[0x8] A Contrarian View: Evolutionary is pressure being applied to the Web. Excellent!

[0x9] HTML5 as an analogue for the perennial security problem

[0xA] Do you frequently benefit from knowing the location of friends via Latitude or other Geolocation services?

SecDocs Feed

Latest security documents RSS feed

[0x1] [Paper] Intelligent debugging and in memory fuzzing

[0x2] [Slides] The evil karmetasploit upgrade

[0x3] [Paper] The evil karmetasploit upgrade

[0x4] [Slides] Tracking the progress of an SDL program: lessons from the gymTracking the progress of an SDL program: lessons from the gym

[0x5] [Slides] Intelligent debugging and in memory fuzzing

[0x6] [Slides] Corporate Security and Intelligence – the dark links

[0x7] [Slides] Underground Economy

[0x8] [Slides] WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity

[0x9] [Audio] WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity

[0xA] [Video] WAF Virtual Patching Challenge: Securing WebGoat with ModSecurity

Hungry Hacker

The Hungry Hacker's Explanation of Everything

[0x1] Buggy Digital Volume Controls

[0x2] Fixing an Office Chair

[0x3] Buying a little more time from my Microsoft Optical Mouse

[0x4] lspci for Windows… Sort of…

[0x5] Super-caching with TimThumb

[0x6] Low-pressure Spyder with Pure Energy Regulator

[0x7] UPnP-IGD on FreeBSD with PF

[0x8] S/PDIF Output on Asus K8S-LA “Salmon”

[0x9] RedStar v2 WordPress Theme

[0xA] Organized Chaos

Bugtraq

The premier general security mailing list. Vulnerabilities are often announced here first, so check frequently!

[0x1] Re: Re: IIS5.1 Directory Authentication Bypass by using ?:$I30:$Index_Allocation?

[0x2] VUPEN Security Research - Google Chrome Focus Processing Memory Corruption Vulnerability (VUPEN-SR-2010-249)

[0x3] [ MDVSA-2010:170 ] wget

[0x4] [SECURITY] [DSA-2102-1] New barnowl packages fix arbitrary code execution

[0x5] nullcon Goa dwitiya (2.0) Call For Papers

[0x6] [ GLSA 201009-01 ] wxGTK: User-assisted execution of arbitrary code

[0x7] [security bulletin] HPSBMA02572 SSRT100082 rev.1 - HP Operations Agent Running on Windows, Local Elevation of Privileges and Remote Execution of Arbitrary Code

[0x8] Rooted CON 2011 - Call for Papers

[0x9] Vulnerabilities in CMS WebManager-Pro

[0xA] {PRL} Novell Netware OpenSSH Remote Stack Overflow

Government Technology Policy / Management News

Government Technology: News: Policy/Management

[0x1] Google Earth Helps Identify Code Violators in Mecklenburg County, N.C.

[0x2] Work Continues on 'Unprecedented' Computer Outage in Virginia

[0x3] Virginia Fixing Computer Outage Affecting State Agencies

[0x4] Texas Says It Will Seek New Data Center Contractors

[0x5] CIO Sam Nixon Tries to Fix Virginia's IT Outsourcing Effort

[0x6] Is Google Earth Eyeing Your Pool?

[0x7] California Cities and Counties Mandated to Disclose Public Employees' Salaries

[0x8] Are Digital Copy Machines Really a Security Concern?

[0x9] California Is Latest State to Ponder Regulating Online Politics

[0xA] Performance Measurement Helps IT Projects Stay on Time and on Budget

LinuxSecurity.com: Ubuntu Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Review: The Official Ubuntu Book

[0x3] Ubuntu: 982-1: Wget vulnerability

[0x4] Ubuntu: 981-1: libwww-perl vulnerability

[0x5] Ubuntu: 979-1: okular vulnerability

[0x6] Ubuntu: 976-1: Tomcat vulnerability

[0x7] Ubuntu: 977-1: MoinMoin vulnerabilities

[0x8] Ubuntu: 974-1: Linux kernel vulnerabilities

[0x9] Ubuntu: 973-1: KOffice vulnerabilities

[0xA] Ubuntu: 972-1: FreeType vulnerabilities

Free IT - Data Management Magazines and Downloads from bestsecuritytips.tradepub.com

Free publications and offers about databases and data management.

[0x1] Backup Exec 2010: Archiving Options

[0x2] Close the Protection Gap & Safeguard your Business

[0x3] Addressing the Root Causes of Inefficiency in Data Protection

[0x4] Business Continuity and Disaster Recovery Guide

[0x5] Speed Innovation and Reduce R&D Costs with Scientific Information Management

[0x6] How Scientific Business Intelligence Can Drive Top Line Innovation Growth

[0x7] The Beginner's Guide to Joomla

[0x8] Mission Critical

[0x9] Oracle Magazine

[0xA] Exposing and Taming Costs of Office Document-Handling

Identity Theft Blog

Welcome to the most progressive identity theft blog which includes hundreds of original identity theft articles written by Henry Bagdasarian.

[0x1] Information Security Shortfalls

[0x2] Electronic Health Record

[0x3] Information Security Purposes

[0x4] Fraud Schemes

[0x5] Exploitable Identity Component

[0x6] Internet Security Initiative

[0x7] Define Personal Information

[0x8] Protect Stored Information

[0x9] Fraud Drivers

[0xA] Collect Your Debit Card

Enterprise Storage Forum News

Covering security, storage, and networking for the enterprise IT professional

[0x1] Solid State Drives Get Faster with TRIM

[0x2] Solid State Drives in Enterprise Applications

[0x3] Oracle to Keep Sun's Data Storage, Tape Businesses

[0x4] LTO-5 Breathes New Life into Tape Storage

[0x5] NetApp Deepens Ties with Cisco, VMware

[0x6] EMC Reports Strong Data Storage, Deduplication Sales

[0x7] Symantec Adds Deduplication to Backup Software

[0x8] EMC Doubles Clariion, Celerra Density with 2TB SATA Drives

[0x9] RAID Storage Levels Explained

[0xA] NetApp, Cisco and VMware Deal May Be Coming

The SMB Minute

The SMB Minute

[0x1] Four Must-Have SMB Security Tools

[0x2] How to choose the right Firewall for Your SMB

[0x3] Fake Anti-Virus Progams

[0x4] Interview with Chirs Nickerson Part3

[0x5] Those Who Cannot Remember the Past are Condemned to Repeat it

[0x6] Your photos are NOT posted online

[0x7] More Phishing attempts

[0x8] Interview with Chris Nickerson Part 2, NOW with BETTER audio

[0x9] Interview with Chris Nickerson (part 1)

[0xA] More fake antivirus

Search Engine Watch Blog

Provides constant updates of the latest search engine marketing and other search news from Search Engine Watch and across the web.

[0x1] Facebook Incorporates Liked Web Content Into Search Results

[0x2] Yedda Is Now AOL Answers

[0x3] AP Stops Fighting Bloggers, Plans To Credit Them As News Source

[0x4] Anti Retargeting Campaign Strikes At Google In Time Square

[0x5] YouTube Refines Ad Targeting Features & Lets You Get Freaky With A Bear

[0x6] Social Sharing Architecture on Ping, Apple's Music Social Network

[0x7] Experian Hitwise Has Launched Two Major Search Products

[0x8] Gmail Priority Inbox: Google Applies Algorithm to Email

[0x9] Microsoft / Yahoo Search Alliance: Gentlemen, Start Your PPC Engines!

[0xA] Ad Networks and Exchanges Commit to Self-Certification by the IAB

Dragos Lungu Dot Com | Security Tools And Tips

100% Unbiased Security Tools Reviews. Computer Security Blog about Phishing, Spyware, Malware and other Threats and Vulnerabilities we face everyday .

[0x1] My Twitter Notes on 2010-07-25

[0x2] New NetWitness Visualize : Welcome To The Future!

[0x3] My Twitter Notes on 2010-07-18

[0x4] My Twitter Notes on 2010-07-11

[0x5] My Twitter Notes on 2010-06-27

[0x6] Qualys and Imperva Integration: Natural Evolution

[0x7] My Twitter Notes on 2010-06-20

[0x8] Pro CERT – First Romanian Commercial CERT

[0x9] GFI EventsManager 2010 Review

[0xA] My Twitter Notes on 2010-06-13

chandanlog(3C)

Chandan's blog

[0x1] Fast Forward in Time: Flower Bloom

[0x2] Desktop OS for Personal Computing

[0x3] Netbooks and the end of the Laptop Decade

[0x4] Home Theater Architecture

[0x5] Can you lend me your iPhone for a minute?

[0x6] Doing the same thing again and expecting different results

[0x7] To prevent auto-reply e-mails

[0x8] Secure your Wi-Fi networks now!

[0x9] Notes from the 20th FIRST conference in Vancouver

[0xA] In the heart of Europe

SecuraBit

A show for security professionals.

[0x1] SecuraBit Episode 63: Walking to the Waffle House with Andy Willingham

[0x2] SecuraBit Episode 62: Visualizing Data with NetWitness

[0x3] SecuraBit Episode 61: Reverse Engineering Malware with a Spider Monkey

[0x4] SecuraBit Episode 60: Free Calamari!!!

[0x5] SecuraBit Episode 59: Too many acronyms, my head is going to explode!

[0x6] SecuraBit Episode 58: Forensic Goodness with Harlan Carvey

[0x7] SecuraBit Episode 57: Doctor Cole, I Presume?

[0x8] SecuraBit Episode 56: "Try Harder" - Used with permission

[0x9] SecuraBit Episode 55: 10000 Tubes of KY and a Case of Dog Biscuits!

[0xA] SecuraBit Episode 54 - Lions and Tigers and Banking Trojans, OH MY!

Techworld.com Networking

Latest IT articles from Techworld's Networking channel

[0x1] Cisco buys Arch Rock wireless smart grid company

[0x2] How to get started with a blade system

[0x3] Opsview Community Edition review

[0x4] Cacti review

[0x5] Brocade adds 100G Ethernet to switch and router line

[0x6] Is Cisco making a play for Skype?

[0x7] Skype launches Skype Connect enterprise voice calling

[0x8] Sonos ZonePlayer S5 review

[0x9] Vyatta upgrades routing software for IPv6

[0xA] Verizon Business says enterprises need to move to IPv6

DarkReading - All Stories

DarkReading

[0x1] Tech Insight: Retooling Vulnerability Scanning, Penetration Testing for IPv6

[0x2] Five Ways to Stop Mass SQL Injection Attacks

[0x3] IPv6 Transition Poses New Security Threats

[0x4] Networked Scanners Offer A Window Into The Enterprise, Researcher Says

[0x5] U.S. Businesses Could Lose Up To $1 Billion In Online Banking Fraud This Year

[0x6] Product Watch: Verizon, VMware Team Up With Hybrid Cloud Service

[0x7] Could USB Flash Drives Be Your Enterprise's Weakest Link?

[0x8] Delaware Contractor Mistakenly Posts Personal Data Of 22,000 Employees

[0x9] IBM Corrects Unpatched Vulnerability Numbers After Google Challenge

[0xA] Major Disruption of Pushdo Botnet Wasn't The Original Goal

CERIAS Combined Feed

News and Blog posts from CERIAS. This feed does not include our events calendar (http://www.cerias.purdue.edu/feeds/events)

[0x1] Spafford quoted on Cyberczar’s trusted identities proposal

[0x2] Spafford Attends White House Cybersecurity Briefing

[0x3] Centers of ... Adequacy, Revisited

[0x4] Own Your Own Space

[0x5] “Game Change” Request for comments

[0x6] Mobile Forensics World 2010

[0x7] Panel #3: The Evolution of Research Funding and Projects (Symposium Summary)

[0x8] CERIAS Seminar Presentation: David Bell (Symposium Summary)

[0x9] Morning Keynote Address: DHS Undersecretary Rand Beers (Symposium Summary)

[0xA] Fireside Chat (Symposium Summary)

PacketWars

Attack. Defend. Survive.

[0x1] Pro Shop Video Posted

[0x2] PacketWars in Vienna

[0x3] Battle Heidelberg 2010

[0x4] Hacker Joe @ Day-Con III 2009 Special Presentation

[0x5] Flickr Slideshow

[0x6] Cleveland Rocks – Angus To Present On Cyber War

[0x7] Day-Con III Dayton Security Summit 2009

[0x8] ERNW “All Stars” Win The Battle of Heidelberg

[0x9] 2010 Season Starts in Heidelberg

[0xA] Mr Blitter Goes to Washington

Learning Solaris 10

Check out the Zones F.A.Q. !

[0x1] CentOS 3.9 running in an lx branded zone

[0x2] OpenSolaris & Sun Secure Global desktop

[0x3] Opensolaris & wifi Broadcom BCM4312 on Dell Vostro 1710

[0x4] Security Advantages of the Solaris Zones Software

[0x5] Understanding the Security Capabilities of Solaris Zones Software

[0x6] New blueprint over the M-Series servers configuration

[0x7] Sun Forums: A Sun Java System Web Server 7.0 Reference Deployment

[0x8] Network virtualization in Solaris : project Crossbow

[0x9] Setting Up OpenDS 1.0.0 as a Naming Service

[0xA] Sun Fire X4500 as a Media Server for Symantec Veritas NetBackup 6.5

CSOONLINE.com - Employee Protection

[0x1] Executive protection: Why the private sector model is broken

[0x2] Artful security: Design elements that ensure security, but also emphasize style

[0x3] World Cup security: Guard labor strike was a game changer

[0x4] World Cup security: Preparing for the unexpected

[0x5] Secure Parking Lot Design: Dos and Don'ts

[0x6] Parking Lots and Garages: Security Factors

[0x7] Travel Security: What to Pack to Survive a Natural Disaster

[0x8] Disaster in Haiti: Advice for Employees and Operations on the Ground

[0x9] Security and Building Design: What Changed in This Decade

[0xA] Testing Shows Cocaine, Meth Use Down Among U.S. Workforce

Antionline Forums - Maximum Security for a Connected World

AntiOnline Forums - Computer security community for internet safety and trusted networks

[0x1] web hosting security

[0x2] WAIK help

[0x3] Proxy Question

[0x4] Server Clone Not Booting (HALP!)

[0x5] Stupid Infections.

[0x6] Does the number of hackers increase the success rate or speed?

[0x7] Hello World!(my first post)

[0x8] router udp logs

[0x9] Conime.exe

[0xA] Help w.t.f

Lifehacker: hack attack

Lifehacker posts tagged hack attack

[0x1] How to Find Time to Learn Something New or Tackle a Passion Project [Productivity]

[0x2] The Holy Grail of Ubiquitous Plain-Text Capture [Plain Text]

[0x3] Five Really Handy Google Command Line Tricks [Command Line]

[0x4] How to Analyze, Clean Out, and Free Space on Your Hard Drive [Hard Drives]

[0x5] How to Automatically Clean and Organize Your Desktop, Downloads, and Other Folders [Organization]

[0x6] How to Automatically Sync Any Song You Download to iTunes [Hack Attack]

[0x7] Bypass Heavy-Handed Web Filters with Your Own Proxy Server [Hack Attack]

[0x8] #hackattack

[0x9] Become a Gmail Master Redux [Hack Attack]

[0xA] How to Put Your PC to Good Use While You're Sleeping [Hack Attack]

Google Online Security Blog

The latest news and insights from Google on security and safety on the Internet.

[0x1] Vulnerability trends: how are companies really doing?

[0x2] Rebooting Responsible Disclosure: a focus on protecting end users

[0x3] Extending SSL to Google search

[0x4] Do Know Evil: web application vulnerabilities

[0x5] The Rise of Fake Anti-Virus

[0x6] The chilling effects of malware

[0x7] Phishing phree

[0x8] Detecting suspicious account activity

[0x9] Meet skipfish, our automated web security scanner

[0xA] Federal Support for Federated Login

It's a shampoo world anyway

...la lausige Leben, revisited

[0x1] NoScript now includes LocalRodeo-like functionality

[0x2] OWASP Germany Conference

[0x3] LocalRodeo (beta) for Firefox 3

[0x4] Travel ahead

[0x5] DeepSec 2007 Roundup

[0x6] Why I do not like taint tracking

[0x7] DNS rebinding at CCS'07

[0x8] CfP: NordSec 2007 - The 12th Nordic Workshop on Secure IT Systems

[0x9] 2nd Rule: You do blog about Bar Camp

[0xA] New LocalRodeo Version

Moreover Technologies - Computer security news

Computer security news - more than 340 categories of real-time RSS news feeds

[0x1] Penny Stock Tips That Pay To Trade - Sponsored Link

[0x2] Facebook glitch let spammer post to walls

[0x3] Police defend handling of tabloid hacking scandal (AFP)

[0x4] Facebook glitch let spammer post to walls

[0x5] Facebook Glitch Let Spammer Post to Walls

[0x6] Facebook Glitch Let Spammer Post to Walls

[0x7] Spammers curse new Apple Ping social networking service with iPhone scams

[0x8] Andy Coulson 'lied' over phone hacking ? reporter

[0x9] Facebook adds hacker tracker tool

[0xA] Apple's Ping succumbs to the spammers.

CNET News - Security

[0x1] Apple's Ping dinged by spam

[0x2] U.N. exec: Cyberwar could be 'worse than tsunami'

[0x3] Facebook adds new remote log-out security feature

[0x4] Nigerian scam tops list of decade's online cons

[0x5] India wants local servers from RIM, Google, Skype

[0x6] China requires cell phone subscriber IDs

[0x7] Quantum crypto cracked, researchers say

[0x8] Sweden reopens rape probe of Wikileaks founder

[0x9] Cars: The next hacking frontier?

[0xA] Gmail, Skype now in India's crosshairs

US-CERT Technical Cyber Security Alerts

US-CERT Technical Cyber Security Alerts provide timely information about current security issues, vulnerabilities, and exploits.

[0x1] TA10-238A: Microsoft Windows Insecurely Loads Dynamic Libraries

[0x2] TA10-231A: Adobe Reader and Acrobat Vulnerabilities

[0x3] TA10-223A: Adobe Flash and AIR Vulnerabilities

[0x4] TA10-222A: Microsoft Updates for Multiple Vulnerabilities

[0x5] TA10-194B: Oracle Updates for Multiple Vulnerabilities

[0x6] TA10-194A: Microsoft Updates for Multiple Vulnerabilities

[0x7] TA10-162A: Adobe Flash and AIR Vulnerabilities

[0x8] TA10-159B: Microsoft Updates for Multiple Vulnerabilities

[0x9] TA10-159A: Adobe Flash, Reader, and Acrobat Vulnerability

[0xA] TA10-131A: Microsoft Updates for Multiple Vulnerabilities

Search Engine Watch Discussion Forums

Search Engine Watch Forums

[0x1] Yahoo Answers !

[0x2] Google adds �priority inbox' to Gmail

[0x3] finding the right keywords

[0x4] SEO Redesign gone wrong

[0x5] Google Page Formula

[0x6] ALT and TITLE as descriptive elements

[0x7] Google and Duplicate Content?

[0x8] Create Report of website?

[0x9] New Google software nagging me

[0xA] Yahoo count number of back links?

Full Disclosure

An unmoderated high-traffic forum for disclosure of security information. Fresh vulnerabilities sometimes hit this list many hours before they pass through the Bugtraq moderation queue. The relaxed atmosphere of this quirky list provides some comic relief and certain industry gossip. Unfortunately 80% of the posts are worthless drivel, so finding the gems takes patience.

[0x1] Microsoft Internet explorer 8 DLL Hijacking (IESHIMS.DLL)

[0x2] Re: Virus submission site

[0x3] Internet Explorer 8 PoC: Twitter forced-tweet demo

[0x4] Re: Virus submission site

[0x5] Re: Virus submission site

[0x6] Re: Orange Spain disclosing user phone number

[0x7] Tuscl.net SQL injection with 30k Plain Text Passwords & 80k Email list

[0x8] Re: Virus submission site

[0x9] Re: Virus submission site

[0xA] Re: Virus submission site

Web App Security

Provides insights on the unique challenges which make web applications notoriously hard to secure, as well as attack methods including SQL injection, cross-site scripting (XSS), cross-site request forgery, and more.

[0x1] nullcon Goa dwitiya (2.0) Call For Papers

[0x2] Online Binary Planting Exposure Test

[0x3] [HITB-Announce] HITB2010 SIGNINT Sessions

[0x4] Released SpyBHORemover 2.5

[0x5] t2′10 Challenge to be released 2010-08- 28 10:00 EEST

[0x6] [OWASP] APPSEC BRAZIL 2010 - REGISTRATIONS OPEN!

[0x7] Better Security Through Sacrificing Maidens

[0x8] Ruxcon 2010 Final Call For Papers

[0x9] Re: winAUTOPWN v2.3 Released

[0xA] Re: winAUTOPWN v2.3 Released

Techworld.com Security

Latest IT articles from Techworld's Security channel

[0x1] Black hole discovery could boost quantum computers

[0x2] Onapsis to launch ERP vulnerability testing suite

[0x3] Women are better at protecting corporate secrets

[0x4] Facebook introduces new security measures to kick out spammers

[0x5] Microsoft silent on Windows apps vulnerable to DLL hijacking attacks

[0x6] M0n0wall review

[0x7] AS Communication Gateway review

[0x8] Fake antivirus software using ransom threats

[0x9] Fake antivirus software uses ransom threats

[0xA] Russian Trojan blamed for credit card losses at US diner

C skills

A blog dedicated to software and network trickery.

[0x1] Please hold the line!

[0x2] Droid2

[0x3] Jailbreaking legalized in terms of Y^HDMCA

[0x4] exploid works on the Droid X

[0x5] android trickery

[0x6] Fixing large file truncation in lophttpd

[0x7] New lophttpd version supports faster logging

[0x8] Looking for lophttpd testbeds

[0x9] New lophttpd packges fixes some issues

[0xA] CONFIG_UNIX_MONITOR=y

BankInfoSecurity.com "Compliance Insight" Blog RSS Syndication

BankInfoSecurity.com.com RSS Feeds for Compliance Insight blog.

[0x1] Heartland: Where is the Outrage?

[0x2] Credit Unions Pay a Premium for Doing the Right Thing

[0x3] It's Time to Get Serious About PCI as a Regulation

[0x4] Heartland Breach Saps Resources, Time from Institutions

[0x5] Boards of Directors: How to Set the Tone at the Top for Security and Compliance

[0x6] Regulatory Compliance: It's Not Enough to Plan; You Must Test

[0x7] Increased Regulatory Scrutiny: A Good Thing or Bad?

[0x8] Four Tips for a Successful (and Secure) 2009

[0x9] New Year's Resolution: Assess Your Risk

[0xA] FDIC: Now Hiring 1400 New Examiners

OSVDB Blog :

Everything Is Vulnerable

[0x1] Open Security Foundation Launches New Cloud Security Project

[0x2] March Update: Challenge: OSVDB Winter 2010 Fundraising Goal = done

[0x3] iDefense VCP as seen through OSVDB

[0x4] February Update: OSVDB Winter 2010 Fundraising Goal

[0x5] Time to.. Track More Data

[0x6] Open Security Foundation - Advisory Board - Call for Nominations

[0x7] Open Security Foundation - State of the Union 2010

[0x8] January Update: OSVDB Winter 2010 Fundraising Goal

[0x9] Microsoft, Aurora and something about forest and trees?

[0xA] Challenge: OSVDB Winter 2010 Fundraising Goal

Science&Tech | Mail Online

[0x1] Evolution in action: Scientists discover lizards on verge of leap from egg-laying to live births

[0x2] NASA images detailing 50 years of space exploration launch on Flickr

[0x3] Stephen Hawking: Archbishop of Canterbury attacks his claim God did NOT create Universe

[0x4] Samsung Galaxy Tab: Firm joins with Google to take on Apple's iPad

[0x5] Twitter crackdown on hackers posting links to viruses with launch of URL shortening service

[0x6] Elephants are NOT afraid of mice (but they are terrified by ants)

[0x7] Desperate patients told to avoid 'stem cell tourism' abroad

[0x8] How regional dialects are spreading around the UK thanks to Facebook and Twitter

[0x9] Metal detector find was 1,700 year old Roman lantern

[0xA] AOL renews Google deal to share search revenue

TechRadar: Internet news

TechRadar UK Internet feeds

[0x1] Sony adds BBC iPlayer widget to Vaio laptops

[0x2] Google search shows difference between Liverpool and London

[0x3] Skype adds video-calls for groups of 10 people

[0x4] Apple and Facebook in spat over Ping

[0x5] Twitter has over 145 million users

[0x6] Official Twitter iPad app released

[0x7] T3: iPad edition announced by Future

[0x8] IFA 2010: In pictures: Google TV on Sony Internet TV

[0x9] Virgin Media calls for broadband honesty

[0xA] Sonos announces Spotify partnership

Virtual Shadows

the privacy blog!

[0x1] Facebook vs criminals 1-1?

[0x2] EU cookie directive – before and after

[0x3] New privacy laws in Germany

[0x4] Google CEO’s latest privacy statement

[0x5] So you like cookies?

[0x6] You don’t need to be disconnected to relax according to Adam Erlandsson of SvD!

[0x7] An interesting demographic shift is happening

[0x8] RFID keyrings issued to Swedish children

[0x9] Have you bothered to configure your privacy settings on Facebook yet?

[0xA] Surveyed whilst you pray

Vulnerability Analysis Blog

[0x1] Study of Malicious Domain Names: TLD Distribution

[0x2] CERT Basic Fuzzing Framework

[0x3] Top-10 Top Level and Second Level Domains found in Malicious Software

[0x4] Plain Text Email in Outlook Express

[0x5] Managing IPv6 - Part 2

[0x6] Managing IPv6 - Part 1

[0x7] Internet Explorer Kill-Bits

[0x8] Mitigating Slowloris

[0x9] Vulnerabilities and Attack Surface

[0xA] Release of Dranzer ActiveX Fuzzing Tool

TechRadar: All news feeds

TechRadar UK news feeds

[0x1] The hottest tech trends of IFA 2010

[0x2] Logitech announces new Ultimate Ear earphones

[0x3] Choiix Boom Boom shown off

[0x4] Angry Birds arrives on the Android platform

[0x5] In Depth: 7 of the coolest gadgets on show at IFA 2010

[0x6] IFA 2010: Acer announces Aspire easyStore H341 NAS

[0x7] IFA 2010: Philips | O'Neill Headphones shown off

[0x8] IFA 2010: Hands on: Philips Cinema 21:9 Platinum Series review

[0x9] IFA 2010: Hands on: LG 31-inch OLED TV review

[0xA] IFA 2010: Hands on: LG LEX8 review

Oracle Security Alerts

Security Alerts Issued by Oracle

[0x1] This feed has moved!

[0x2] Oracle Critical Patch Update (CPU) - July 2010

[0x3] Oracle Critical Patch Update (CPU) - April 2010

[0x4] Oracle Security Alert for CVE-2010-0073 - February 2010

[0x5] Critical Patch Update - January 2010

[0x6] Critical Patch Update - October 2009

[0x7] Critical Patch Update - July 2009

[0x8] Critical Patch Update - April 2009

[0x9] Critical Patch Update - January 2009

[0xA] Critical Patch Update - October 2008

CGISecurity - Website and Application Security News

All things related to website, database, SDL, and application security since 2000.

[0x1] A reminder as to why using random salts is a good idea

[0x2] Why publishing exploit code is *generally* a bad idea if you're paid to protect

[0x3] A reminder that CSRF affects more than websites

[0x4] Paper: Feasibility and Real-World Implications of Web BrowserHistory Detection

[0x5] Mozilla releases browser checker to see if you're running vulnerable plugins

[0x6] Release of Strict Transport Security http module for ASP.NET.

[0x7] DAVTest: Quickly Test & Exploit WebDAV Servers

[0x8] Apache Compromised Again

[0x9] Tools: CMS Explorer Tool Released

[0xA] RSnake joins google

physicsworld.com: all content

Latest content from physicsworld.com

[0x1] Graphene transistor beats speed records

[0x2] Statistical Mechanics and Computation of DNA self-assembly

[0x3] Interdisciplinary Applications of Statistical Physics & Complex Networks

[0x4] Dislocation Nucleation and Dynamics in Silicon: Size Effects

[0x5] NODYCOS-2011: International School on Nonlinear Dynamics in Complex Systems, Yaounde Cameroon

[0x6] Changes spotted in fundamental constant

[0x7] The Sun's magnetic field warps its environment

[0x8] Three-year extension recommended for Tevatron

[0x9] Hubble's greatest hits

[0xA] Hubble's greatest hits

GovInfoSecurity.com Agency Alerts RSS Syndication

GovInfoSecurity.com RSS News Feeds on government information security agency alerts.

[0x1] HR 5136: National Defense Authorization Act for Fiscal Year 2011

[0x2] S. 3454: National Defense Authorization Act for Fiscal Year 2011

[0x3] NIST IR 7559: Forensic Web Services

[0x4] GAO: Federal Guidance Needed to Address Control Issues with Implementing Cloud Computing

[0x5] NIST SP 800-53A, Revision 1: Guide for Assessing the Security Controls in Federal Information Systems

[0x6] National Strategy for Trusted Identities in Cyberspace (Draft)

[0x7] NIST: Computer Security Division 2009 Annual Report

[0x8] NIST SP 800-34 Rev. 1: Contingency Planning Guide for Federal Information Systems

[0x9] GAO: VA Needs to Resolve Long-Standing Infosec Weaknesses

[0xA] NIST SP 800-85A-2 (Draft): PIV Card Application and Middleware Interface Test Guidelines

CSOONLINE.com - Wireless/Mobile Security

[0x1] What security can learn from the $15M Sprint employee breach

[0x2] BlackBerry service to be monitored in Saudi Arabia

[0x3] Credit and debit card skimming: Look out for fraudulent readers at gas stations

[0x4] Hackers release new version of iPhone jailbreak app

[0x5] Inside the Celtics' infosecurity playbook

[0x6] The mobile security survival guide

[0x7] iPhones, iPads in the enterprise: 5 security perspectives

[0x8] Why security needs to catch up to Web 2.0 technology

[0x9] Mobile Security: Why I still want my iPad, iPhone

[0xA] Google wi-fi data capture unethical, but not illegal

Managing Intellectual Property & IT Security

New methods of communications are changing the way that we do business, from hiring people, to designing scalable systems, to breaking down silos across organizations, how we manage information and systems in the Web 2.0 world is going to determine how well we compete as people and as companies in the future.

[0x1] What is next for computing when people have gone mobile?

[0x2] YouTube and Community Guidelines could mean being locked out of your account

[0x3] Cooperating with Law Enforcement in Social Networking

[0x4] How to prove you are working when you are working from home

[0x5] How far would you go to get a job in todays market redux

[0x6] Cleaning up after Antivirus Soft on Vista

[0x7] Fat and Bloated is no way to go through life

[0x8] Facebook needs a better way to unfriend people

[0x9] Observations on my own Startup

[0xA] 10 things to think about with Cloud Computing and Forensics

Hack In The Box

Hack In The Box Backend

[0x1] HITBSecConf back with new features

[0x2] IBM X-Force backs-off Google as major patch offender

[0x3] Murdoch Reporters’ Phone Hacking Was Endemic, Victimized Hundreds

[0x4] Northrop Grumman takes blame for Va. IT services outage

[0x5] India wants local servers from RIM, Google, Skype

[0x6] IT security workers oblivious to social networking risks

[0x7] Privacy in iTunes Ping

[0x8] Phishing scam targets fast food customers

[0x9] Microsoft Releases Application Security Toolkit for Developers

[0xA] HP to Buy 3Par for $2.35 Billion as Dell Walks Away

Sun Bloggers

Welcome to Blogs.sun.com! This space is accessible to any Sun employee to write about anything.

[0x1] Register Today for Free Webinar: Simplify Access Management with F5 & Oracle

[0x2] Free Webinar Aug. 18: Quick-Start Compliance with Identity Analytics

[0x3] Free Webinar Aug. 18: Quick-Start Compliance with Identity Analytics

[0x4] New Download Instructions for Oracle Directory Services Enterprise Edition

[0x5] Great New Article on Oracle Solaris 10 Security

[0x6] Mapping between CVE numbers and Solaris patches for CPU July 2010

[0x7] Closed Networks and the GlassFish Update Center

[0x8] Last Chance to Register: Identity Management 11g Launch Webcast

[0x9] Oracle Community for Security at Security Summit 2010

[0xA] nmap 5.35DC1 Compile on OpenSolaris

Syrinx Technologies Podcasts

Interviews with local, regional and international technology experts on various topics.

[0x1] Application Development in a Web 2.0 World

[0x2] Ingredients for a Successful Disaster Recovery Plan

[0x3] Security & Web Facing Applications

[0x4] Different Approaches to SSO

[0x5] Story as Brand

[0x6] Effective Network Management Strategies

[0x7] HIPAA Privacy and Security

[0x8] What’s Wrong with the Federal, State and Local Budget Process

[0x9] Business Continuity Planning

[0xA] Identity Federation and Compliance

Rational Survivability

Hoff's Ramblings about Information Survivability, Information Centricity, Risk Management and Disruptive Innovation. Oh, I have a fondness for virtualization and cloud computing security, too...

[0x1] VMware’s (New) vShield: The (Almost) Bottom Line

[0x2] How To Wield the New vShield (Edge, App & Endpoint)

[0x3] Why Is NASA Re-Inventing IT vs. Putting Men On the Moon? Simple.

[0x4] Dear Verizon Business: I Have Some Questions About Your PCI-Compliant Cloud…

[0x5] Hoff’s 5 Rules Of Cloud Security…

[0x6] VMworld – v0dgeball Deathmatch Details: vSquirrels vs. Sakacc’s Army…

[0x7] Video Of My Cloudifornication Presentation [Microsoft BlueHat v9]

[0x8] Airing Private Cloud’s Dirty Laundry…

[0x9] If You Could Have One Resource For Cloud Security…

[0xA] See You At Black Hat 2010 & Defcon 18?

Securelist / Analysis

[0x1] Monthly Malware Statistics: August 2010

[0x2] Spam report: July 2010

[0x3] Information Security Threats in the Second Quarter of 2010

[0x4] TDSS

[0x5] Monthly Malware Statistics July 2010

[0x6] Spam in the Second Quarter of 2010

[0x7] Spam report: June 2010

[0x8] Mass Defacements: the tools and tricks

[0x9] Black DDoS

[0xA] Monthly Malware Statistics: June 2010

Juniper

Juniper RSS Feed

[0x1] Signature Update #1765

[0x2] Juniper Networks Appoints David Schlotterbeck to its Board of Directors

[0x3] Signature Update #1764

[0x4] Juniper Networks Announces the Date and Webcast Information of Upcoming Investor Events for September 2010

[0x5] Real-Time Survey Conducted At VMworld Reveals Security Is A Primary Business Objective

[0x6] Signature Update #1763

[0x7] How Are You Protecting Your Data?

[0x8] Juniper EX Series Gain Momentum – Thanks to You!

[0x9] Server Virtualization requires new thinking for architecting the Data Center Network

[0xA] STX Deploys Juniper Networks End-To-End Networking Solution to Support Corporate Collaboration

Rational Survivability

PLEASE NOTE: I HAVE PERMANENTLY MOVED MY BLOG TO http://www.rationalsurvivability.com/blog <-- All these posts/comments have been moved there and all new posts since May 2009 appear there.

[0x1] IMPORTANT REMINDER: My Blog and RSS Feed Have Moved To http://www.rationalsurvivability.com/blog

[0x2] IMPORTANT REMINDER: My Blog and RSS Feed Have Moved

[0x3] IMPORTANT: Moving My Blog & RSS Feed

[0x4] BeanSec! Wednesday, March 18, 2009 - 6PM to ?

[0x5] How To Be PCI Compliant in the Cloud...

[0x6] On the Overcast Podcast with Geva Perry and James Urquhart

[0x7] More On Clouds & Botnets: MeatClouds, CloudFlux, LeapFrog, EDoS and More!

[0x8] Source Boston - Video Interviews of Security Rockstars...

[0x9] Oh Noes: We Can't Monitor/Protect Against Intra-VM Traffic!

[0xA] Sun vs. Cisco? I'm Getting My Popcorn...

Techworld.com Operating Systems

Latest IT articles from Techworld's Operating Systems channel

[0x1] Top 10 Linux distributions for business

[0x2] Apple iOS devices outnumber Android 6 to 1 on web

[0x3] Hurricane Earl is on its way - some IT tips to help

[0x4] Apple unveils new version of AppleTV

[0x5] 3D content is king at IFA trade show

[0x6] Novell ships Suse Linux for VMware

[0x7] The first digital 'social book' is launched

[0x8] Palm WebOS 2.0 beta released to developers

[0x9] Google's Realtime Search engine more powerful then Twitter's search for status updates

[0xA] Microsoft claims big developer interest in Windows Phone 7

BankInfoSecurity.com "Secure Marketspace" Blog RSS Syndication

BankInfoSecurity.com.com RSS Feeds for Secure Marketspace blog.

[0x1] A World Without Payment Cards (and PCI Compliance)

[0x2] Multi-Factor Authentication ... or be Sued?

[0x3] Obama's "Big Brother" Vision of IAM

[0x4] 60 Technology & Security Vendor Interviews in 400 Minutes

[0x5] It's Not a Matter of Trust, It's a Matter of Honesty

[0x6] Electronic Voting: The Ultimate Online Banking Application

[0x7] FinancialStability.gov - From Translucent to Transparent

[0x8] Predicting the Next Regulatory Challenge for Financial Institutions

[0x9] How Google Will Save the Banking Industry (and the U.S. Economy)

[0xA] Credit Crisis as a Segue to a New Financial Model

CSOONLINE.com - Security Industry

[0x1] Krebs: FCC must make ISPs crack down on spammers and malware

[0x2] Symantec: A mid-year status check on security predictions

[0x3] SANS Boston 2010: Never too old to learn

[0x4] Former PA CISO: National cybersecurity bill won't work

[0x5] A striking disconnect between CSOs and hackers

[0x6] Stanley vs. Verizon: the integrated security smackdown

[0x7] From Microsoft to Adobe insecurity: One man's journey

[0x8] How young upstarts can get their big security break in 6 steps

[0x9] Measuring the health of corporate security

[0xA] Maley: Here's How Firing REALLY Went Down

Twitter / exploitdb

Twitter updates from Exploit Database / exploitdb.

[0x1] exploitdb: [dos] - Intel Video Codecs v5 Remote Denial of Service: http://bit.ly/cY86Ks

[0x2] exploitdb: [dos] - FFDshow SEH Exception leading to NULL pointer on Read: http://bit.ly/cr2YL9

[0x3] exploitdb: [remote] - Trend Micro Internet Security 2010 ActiveX Remote Exploit: http://bit.ly/aYL2dG

[0x4] exploitdb: [webapps] - smbind http://bit.ly/aYdHhI

[0x5] exploitdb: [papers] - MOAUB #3 - Visinia CMS Multiple Vulnerabilities - 0day: http://bit.ly/bempcZ

[0x6] exploitdb: [papers] - MOAUB #3 - Trend Micro Internet Security Pro 2010 ActiveX extSetOwner - Binary Analysis: http://bit.ly/dhG3x4

[0x7] exploitdb: MOAUB #3 - Trend Micro Internet Security Pro 2010 ActiveX extSetOwner Remote Code Execution (BA) and Visinia 1.3 Multiple Vulnerabilities

[0x8] exploitdb: [remote] - Trend Micro Internet Security Pro 2010 ActiveX extSetOwner Remote Code Execution: http://bit.ly/d9UCwH

[0x9] exploitdb: [webapps] - MOAUB #3 - Visinia 1.3 Multiple Vulnerabilities: http://bit.ly/9u8ssu

[0xA] exploitdb: [webapps] - Shop a la Cart Multiple Vulnerabilities: http://bit.ly/dczM6Z

CSOONLINE.com - Malware/Cybercrime

[0x1] What security can learn from the $15M Sprint employee breach

[0x2] Botnet takedown may yield valuable data

[0x3] Moscow probes alleged ransomware gang

[0x4] U.S. military wants influence over private Cyberstructure

[0x5] Free tool from Team Cymru aims to help fight malware

[0x6] Symantec: A mid-year status check on security predictions

[0x7] Baidu sues Chinese security company

[0x8] Trojan blamed for Spanish Air crash

[0x9] ACH fraud: Why criminals love this con

[0xA] Revisions to credit card security standard on the way

Published Security Alerts

Published Security Alerts

[0x1] SQL Injection in SYS.KUPV$FT in Oracle 10g. Rel. 1

[0x2] SQL Injection in SYS.KUPV$FT_INT in Oracle 10g. Rel. 1

[0x3] Event 10053 logs TDE wallet password in cleartext

[0x4] Transparent Data Encryption stores key unencrypted in the SGA

[0x5] Cross-Site-Scripting in Oracle Workflow wf_route

[0x6] Cross-Site-Scripting in Oracle Workflow wf_monitor

[0x7] Shutdown listener via iSQL*Plus

[0x8] Shutdown listener via Forms Servlet

[0x9] Plaintext Passwords logged during Installation of Oracle HTMLDB

[0xA] Cross-Site-Scripting Vulnerabilities in Oracle HTMLDB

Betanews

Technology News and IT Business Intelligence

[0x1] 90's game hero Duke Nukem returns after delay of more than a decade

[0x2] Ping off to a rocky start as spam, issues plague service

[0x3] Company of Heroes Online open beta launches, rewards early adopters

[0x4] Verizon offers prepaid data plans for smart phones

[0x5] Samsung bets on Galaxy Tab in race against Apple's iPad

[0x6] Why can't Apple's Ping sing?

[0x7] Toshiba recalls overheating and melting Satellite T-series notebooks

[0x8] First voice-over-LTE call placed in US public safety band

[0x9] Samsung: new wireless USB chips capable of 480Mbps max

[0xA] HP wins 3PAR with $2.4 Billion bid, Dell backs down

tanasi.it

Alessandro `jekil` Tanasi blog

[0x1] End Summer Camp

[0x2] Lol: Java sara` il futuro?

[0x3] Router Alice: trovate le password!

[0x4] Cinema: Alice in Wonderland

[0x5] Lol: Tracking GSM e localizzazione GPS

[0x6] Eliminare il suono delle vuvuzela ai mondiali con il computer

[0x7] Cinema: From Paris to love

[0x8] Lol: Sistema contraccettivo visuale

[0x9] Lol: Consulting Paradise the song

[0xA] Cinema: Robin Hood

Jeremiah Grossman

A page to show up #1 on Google when searching for "Jeremiah" (Currently #5).
Only the prophet and TV show left!
I have the edge, TV show is cancelled and the prophet isn't generating any new content.

The prophet, TV show, and that pesky Owyang guy going down!
A page to show up #1 on Google when searching for "Jeremiah Grossman", and it FINALLY has!

[0x1] Our infrastructure -- Assessing Over 2,000 websites

[0x2] Website Vulnerability Assessments: Good, Fast, or Cheap - Pick Two

[0x3] Breaking Browsers: Hacking Auto-Complete (All Materials Available)

[0x4] In Firefox we can’t read auto-complete, but we can write to it (a lot)!

[0x5] Patching auto-complete vulnerabilities not enough, Cookie Eviction to the rescue

[0x6] Stealing AutoComplete form data in Internet Explorer 6 & 7

[0x7] I know who your name, where you work, and live (Safari v4 & v5)

[0x8] Third-Party Web Widget Security FAQ

[0x9] Full-Disclosure, Our Turn

[0xA] In a cyber-war, we fight for economic well-being

Command Line Kung Fu

This blog will include fun, useful, interesting, security related, non-security related, tips, and tricks associated with the command line. It will include OS X, Linux, and even Windows!

[0x1] Episode #110: Insert Title Here

[0x2] Episode #109: The $PATH Less Taken

[0x3] Episode #108: Acess List Listing

[0x4] Episode #107: Email for Natural File Enhancement

[0x5] Episode #106: Epoch FAIL!

[0x6] Episode #105: File Triage

[0x7] Episode #104: Fricken' Users

[0x8] Episode #100: The Lost Episode

[0x9] Episode #103: Size Might Matter... But Timing is Everything

[0xA] Episode #102: Size Does Matter

Network World on Intrustion Detection and Prevention

The latest intrusion detection and prevention news and analysis from NetworkWorld.com.

[0x1] Fighting intrusions on both sides of the switch

[0x2] Measure and manage the risk inherent in your IT infrastructure

[0x3] Security blunders 'dumber than dog snot'

[0x4] Tektronix Communications to buy Arbor Networks

[0x5] HP's bug bounty program changes disclosure terms

[0x6] Ironkey looks to secure mobile, business banking

[0x7] FCC concerned over DefCon mobile hacking talk

[0x8] Verizon: Data breaches often caused by configuration errors

[0x9] The quiet threat: Cyber spies are already in your systems

[0xA] How can wireless and wired security be brought together, rationalized and managed?

Liquidmatrix Security Digest

Bringing Fire To The Village: Your Source For Computer, Network & Information Security News from Dave Lewis, Security Blogger

[0x1] Security Briefing: September 2nd

[0x2] After BlackBerry, India Now Wants Access to Google, Skype, etc

[0x3] Security Briefing: September 1st

[0x4] Google Scares Priority Inbox Customers With ‘Virus’

[0x5] Russian Police Bust Hacker Gang

[0x6] Wireshark 1.4.0 Released

[0x7] Security Briefing: August 31st

[0x8] PayPal Claims They Were Not Breached

[0x9] Security Briefing: August 30th

[0xA] Indian Voting Machine Hacker Released

CSOONLINE.com - Compliance

[0x1] Put down the pink stickies to improve your career

[0x2] Former PA CISO: National cybersecurity bill won't work

[0x3] Security Careers: Responding to questions successfully

[0x4] Not safe for work: What's acceptable computer use in today's office?

[0x5] Data Protection: SIEM use grows in mid-sized orgs, surveys say

[0x6] Secrets of successful business negotiation

[0x7] Inside Oracle's security assurance program

[0x8] How to Compare and Use Legal Hold Software

[0x9] Five Security Missteps Made in the Name of Compliance

[0xA] PCI DSS, Come Forward and Be Judged

Penetration testing blog

A penetration tester's sequence of words for the community

[0x1] Hacking Internet Kiosks and iKAT

[0x2] Disguising a USB drive as a standard phone jack @ home

[0x3] Python script for renaming and deleting files recursively (AKA: Fixing a broken magento update)

[0x4] CLOC - Count Lines of Code

[0x5] Counting lines of source code

[0x6] CISCO IOS Rookits are da bomb

[0x7] Testing a personal firewall solution, a couple of resources

[0x8] Mass deleting your e-mails from Gmail

[0x9] Gmail security? Well at least start with customizegoogle

[0xA] Quick shellscript for replacing a watermark

Free Information Technology Magazines and Downloads from bestsecuritytips.tradepub.com

Free publications about information technology and digital communication.

[0x1] The ROI of Application Delivery Controllers in Traditional and Virtualized Environments

[0x2] Blackboard at the University of Kentucky

[0x3] Build a Smarter IT Infrastructure for Your School

[0x4] Building a Smarter IT Infrastructure for Local Government

[0x5] Business Continuity and Disaster Recovery Guide

[0x6] IT Pain Relief for Midmarket Businesses Through End-to-End Infrastructure Virtualization

[0x7] Managing the Server Migration Process

[0x8] Accelrys Biological Registration: Mastering Biological R&D at Its Roots

[0x9] The Beginner's Guide to Joomla

[0xA] Finding a Cure for Downtime

Diary of Michael Daw

Weekly humour

[0x1] IIS 6.0 WebDav Exploit, Adobe 8-9.1 JavaScript Exploits, Cisco Works TFTPD Directory Traversal

[0x2] Universal XSS Vulnerability in Google

[0x3] Diffie-Hellman-Branston Key Exchange

[0x4] TCP/IP Security Assessment, FreeBSD Telnet 0-Day, RainbowCrack 1.3, Nokia N95 DoS, Bounty for Worm Author

[0x5] Hacker News: Backtrack 4 Beta, Web Services Testing, Monster Hacked and More

[0x6] IWAS-P Hero Dies Before Conference

[0x7] Pwntry

[0x8] 10 must have tips for infosec people

[0x9] Asking for trouble…

[0xA] Super Duper Invisible Trojan

BankInfoSecurity.com "The Field Report" Blog RSS Syndication

BankInfoSecurity.com.com RSS Feeds for The Field Report blog.

[0x1] Strong Authentication - The Bank's Perspective

[0x2] Failures & Fraud: The Numbers Don't Lie

[0x3] On Breach Trends and Marketing Your Own Security

[0x4] Notes from the Gartner Summit

[0x5] Mortgage Fraud: Farkas Wasn't the First

[0x6] More News You Can Use

[0x7] Security Stories You May Have Missed

[0x8] ACH Fraud by Any Other Name

[0x9] The ABC's of ACH Fraud

[0xA] Fighting Fraud in the Re-Set Economy

ThinkGeek :: Clearance Products

Stuff for Smart Masses - Clearance Items

[0x1] iXP3 Internet Messaging Clock

[0x2] Limited Edition 24" Stormtrooper Super Shogun

[0x3] Rock Paper Scissors Lizard Spock iPhone Case

[0x4] Giant Evolution Timeline book/Playmat

[0x5] Star Wars Blueprints: The Ultimate Collection

[0x6] The Space Child's Mother Goose

[0x7] Rubik's Magic

[0x8] Singing Monkey Balls

[0x9] Bag of Prehistoric Fossils

[0xA] Nashua 357 Premium Grade Duct Tape

Computerworld Blogs

[0x1] Mint 9: Minty fresh Linux

[0x2] Android steals more market share from Apple

[0x3] Top Security at VMworld

[0x4] Toshiba gets into tablet market

[0x5] Gimme!

[0x6] HP wins 3PAR, leaving Dell in dust

[0x7] Fixing iTunes 10's interface

[0x8] Apple-Google smackdown --- who's lying about Android activation numbers?

[0x9] Sorry, Steve -- Apple's still losing to Android

[0xA] Nassau County seeks to block use of e-voting systems in upcoming primary

Virtual Shadows has MOVED!

[0x1] Virtual Shadows is MOVING!

[0x2] Hacking programmable road signs

[0x3] David Lacey likes my book!

[0x4] Censoring your blog

[0x5] Book launch on Monday Central London

[0x6] ouch ....

[0x7] Achieving miracles when times are tough

[0x8] The book arrived on Tuesday

[0x9] Your iPhone as a wind instrument!

[0xA] China's Net Nannies have been busy

Help Net Security - News

Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.

[0x1] Scammers using IM to deliver "IQ Test" spam

[0x2] Automated vs. manual security

[0x3] Facebook boosts security by adding remote logout feature

[0x4] Trojan attacks remain widespread

[0x5] Spammers attack Apple's Ping social network

[0x6] Labor Day phishing warning

[0x7] User's opinions on malware infections revealed

[0x8] Google Code hosting malware-spreading project

[0x9] Fake browser warnings lure victims to rogue AV solution

[0xA] Rescue of Chilean miners used as lure by banker Trojan

DarkReading - All Stories

DarkReading

[0x1] Tech Insight: Retooling Vulnerability Scanning, Penetration Testing for IPv6

[0x2] Five Ways to Stop Mass SQL Injection Attacks

[0x3] IPv6 Transition Poses New Security Threats

[0x4] Networked Scanners Offer A Window Into The Enterprise, Researcher Says

[0x5] U.S. Businesses Could Lose Up To $1 Billion In Online Banking Fraud This Year

[0x6] Product Watch: Verizon, VMware Team Up With Hybrid Cloud Service

[0x7] Could USB Flash Drives Be Your Enterprise's Weakest Link?

[0x8] Delaware Contractor Mistakenly Posts Personal Data Of 22,000 Employees

[0x9] IBM Corrects Unpatched Vulnerability Numbers After Google Challenge

[0xA] Major Disruption of Pushdo Botnet Wasn't The Original Goal

[ISN] InfoSec News Mailing List

InfoSecNews

[0x1] Cross-subdomain Session Fixation

[0x2] Snoop Dogg joins cybercrime fight because 'hack is wack'

[0x3] Botnet takedown may yield valuable data

[0x4] Russian Trojan blamed for credit card losses at US diner

[0x5] Secunia Weekly Summary - Issue: 2010-35

[0x6] News of the World faces fresh phone hacking charge

[0x7] Russian government email servers hacked

[0x8] DARPA Soliciting Bids On Insider Threat Prevention

[0x9] Iran's Cyber Army Hacks 1, 000 US, British, French Gov't Websites

[0xA] Darpa’s Star Hacker Looks to WikiLeak-Proof Pentagon

SecurityVibes UK

Security & Compliance Community

[0x1] Intel's McAfee buy increases risk, warn analysts

[0x2] NIST launches NAC survey

[0x3] iPhone and iPad 'secure enough' for enterprise

[0x4] Android falls victim to first SMS trojan

[0x5] WLAN flaw leaves vendors in cold

[0x6] Defcon social attacks crack blue chips

[0x7] BlackHat raises VPN security issues

[0x8] WPA2 flaw allows insider attack

[0x9] Cyber Security Challenge calls for corporate funding

[0xA] Andrew Yeomans: The Silent Killer Part 2/2

War on Error

One day they'll laugh at what we think is secure. Thankfully, we won't be there to hear them...

[0x1] Gmail's 'priority inbox' - more evidence that corporate email is obsolete

[0x2] The US cyberstrategy 3.0 risks starting Cold War 2.0

[0x3] Data breach fines will not stop the rot

[0x4] Intel is buying McAfee for its engineers, not its products

[0x5] Stupid passwords are a valid rebellion against technology

[0x6] Stupid passwords are a form of rebellion

[0x7] The perils of writing about open source

[0x8] Google strongly denies net neutrality deal

[0x9] Is Google selling out the Internet?

[0xA] Apple should cherish the iPhone Jailbreakers

Packet Storm Security Headlines

Packet Storm Headlines

[0x1] Nigerian Man Gets 12 Years For $1.3m 419 Scam

[0x2] NASA Flies First Drone Over Hurricane

[0x3] BEDIA Website Defaced By Hacker

[0x4] Spammers Crash Apple's Ping Party

[0x5] Prescott May Seek Judicial Review Of Phone Hack Claims

[0x6] Symantec's Hack Is Wack, And Cybersecurity's Most Embarrassing Marketing Campaigns

[0x7] Symantec Snoop Dogg Rap Contest Site Rickrolled

[0x8] PS3 Hack Ban Upheld By Court As Free Version Released

[0x9] Microsoft Freshens Retro Code Lock-Down Tool

[0xA] Murdoch Reporters' Phone-Hacking Was Endemic, Victimized Hundreds

Check Point Update Services Advisories

You are viewing a feed that contains frequently updated content. When you subscribe to a feed, it is added to the Common Feed List. Updated information from the feed is automatically downloaded to your computer and can be viewed in Internet Explorer and other programs.

[0x1] Update Protection against Symantec Alert Management System HNDLRSVC Arbitrary Command Execution Vulnerability

[0x2] Update Protection against Mozilla Firefox Plugin Parameter Array Dangling Pointer Vulnerability

[0x3] Update Protection against Oracle Secure Backup Administration property_box.php Command Injection Vulnerability

[0x4] Update Protection against Apple QuickTime Streaming Debug Error Logging Buffer Overflow Vulnerability

[0x5] Preemptive Protection against Apple Mac OS X CoreGraphics Heap Overflow Vulnerability

[0x6] Update Protection against Adobe Shockwave Player rcsL Chunk Symbol Access Violations Vulnerability (APSB10-20)

[0x7] Update Protection against Adobe Shockwave Player MCsL Parsing Memory Corruption Vulnerabilities (APSB10-20)

[0x8] Update Protection against Adobe Shockwave Player CASt Parsing Memory Corruption Vulnerability (APSB10-20)

[0x9] Update Protection against Adobe Shockwave Player IML32.dll XtcL Denial of Service Vulnerability (APSB10-20)

[0xA] Update Protection against Adobe Shockwave Player MMAP Size Memory Corruption Vulnerability (APSB10-20)

OSCON News (aggregated)

Pull posts from: *Conferences blog * radar * news.oreilly.com * cnet.com * informationweek.com * infoworld.com * eweek.com * wired.com * computerworld.com * Google Blogsearch And searching conference Blogs by oscon

[0x1] Is The "Open Source Bubble" Over?

[0x2] Parsing signals from the Emerging Languages Camp

[0x3] Sorta Live: OSCON 2010 report

[0x4] OSCON and CLS 2010 highlights

[0x5] OSCON 2010 - From Portland to You

[0x6] Augmented reality as etiquette coach

[0x7] OSCON 2010 Interview: Allison Randal, OSCON Chair

[0x8] TYPO3 at OSCON

[0x9] The Key To An Open Source Social Network Is Still People

[0xA] OSCON 2010 Report

XSSed syndication

You are welcome to syndicate and share xssed.com contents

[0x1] Blog: Reducing XSS by way of Automatic Context-Aware Escaping in Template Systems

[0x2] Browser Hijacking Techniques 2009

[0x3] WordPress.com permanent XSS vulnerability

[0x4] How to write a XSS (cross site scripting) worm for McCodes sites

[0x5] Open redirect vulnerabilities: definition and prevention

[0x6] Paper: Smashing the Web for fun & profit using XSS

[0x7] Paper: Defending against XSS with .NET

[0x8] Paper: Carnival, or how to camouflage data for XSS filters

[0x9] Firefox extensions for web developers and penetration testers

[0xA] Paper: Real World XSS

GovInfoSecurity.com Blogs RSS Syndication

GovInfoSecurity.com.com Blog RSS Feeds

[0x1] A Step Closer to EMV

[0x2] Linking Physical and Virtual Security

[0x3] We Could Learn From the Czechs

[0x4] Getting a Cybersecurity Law Enacted

[0x5] Reports Showcase Security Gap

[0x6] Florida Police: 'Pay With Cash Only'

[0x7] Anchors Aweigh: A CIO's Farewell

[0x8] Memos Highlight Physical-Virtual Security

[0x9] Helping Enthusiasts Profit from Their Hacking Skills

[0xA] Spreadsheets Still Subject to Fraud Target

Capi's Corner

Development, Network, Security, Ideas & Opinions

[0x1] Remaining Windows Vista/7 “rearm count”

[0x2] Novatel Merlin U740 using only Windows 7 onboard tools

[0x3] tr.im to be shut down

[0x4] URL shortening services soon to be under siege?

[0x5] Windows Vista Home/Business/Enterprise has a telnet client, too

[0x6] How to force Git to consider a file as binary

[0x7] Router default password database

[0x8] 25C3 CTF – 2nd place for Hagenberg’s team “h4ck!nb3rg”

[0x9] My initial git settings for any repository

[0xA] A new design for my blog

Linus' blog

Eventually this might even contain some Torvalds family pictures.

[0x1] "13744 supplied"

[0x2] Meanwhile, in Finland..

[0x3] A Pig Lover's Oath

[0x4] Silly grin

[0x5] Turst me, I know what I'm doing...

[0x6] Demons? Really?

[0x7] Happy camper

[0x8] Embroidery.. gaah

[0x9] Finnish culture...

[0xA] WTF?

halsten

arbitrary dump

[0x1] Security Conference(s)

[0x2] Zend Studio For Eclipse v.6.1 Keygen

[0x3] Reversing Pro Evolution Soccer 6 - End

[0x4] Reversing Pro Evolution Soccer 6 - Part 3

[0x5] Reversing Pro Evolution Soccer 6 - Part 2

[0x6] Reversing Pro Evolution Soccer 6 - Part 1

[0x7] Reversing Pro Evolution Soccer 6 - Intro

[0x8] Facebook Puzzles Solution

[0x9] Backdoor.W32.Small.PF Analysis

[0xA] Simple PE Viewer (wxWidgets)

Search Engine Watch

Keep updated with major stories about search engine marketing and search engines as published by Search Engine Watch.

[0x1] Reach Holiday Shoppers Penny-Wise and Pound-Wiser

[0x2] Facebook Places: Fit for Local Search or Hype Incarnate?

[0x3] Small Business and Search: Where's the Return? (Part 2)

[0x4] Link Building Query Theory: 7 Crucial Keyword Types for Link Prospect Querying

[0x5] PPC August Roundup: 3 New Features Every PPC Manager Should Try Now

[0x6] How Small Businesses Can Improve Their Relations With Customers Through Social Media

[0x7] 43 Paid Search Marketing Tools (And When To Use Them)

[0x8] 6 Metrics You Need to Manage Link Building

[0x9] Are all Results on Search Engines Equal? A Surprising Journey Within the SERPs

[0xA] How Do You Find High-quality SEO Services?

OSVDB Blog :

Everything Is Vulnerable

[0x1] Open Security Foundation Launches New Cloud Security Project

[0x2] March Update: Challenge: OSVDB Winter 2010 Fundraising Goal = done

[0x3] iDefense VCP as seen through OSVDB

[0x4] February Update: OSVDB Winter 2010 Fundraising Goal

[0x5] Time to.. Track More Data

[0x6] Open Security Foundation - Advisory Board - Call for Nominations

[0x7] Open Security Foundation - State of the Union 2010

[0x8] January Update: OSVDB Winter 2010 Fundraising Goal

[0x9] Microsoft, Aurora and something about forest and trees?

[0xA] Challenge: OSVDB Winter 2010 Fundraising Goal

FaceTime Security Labs

The latest information on threats and vulnerabilities affecting IM and P2P.

[0x1] W32/Autorun.worm.zzo (Low)

[0x2] StonedBootkit.dr (Low)

[0x3] Ransom-J (Low)

[0x4] Spam-Mailbot!3F4D5065 (Low)

[0x5] FakeAlert-DI (Low)

[0x6] Generic FakeAlert!htm (Low)

[0x7] FakeAlert-DA (Low)

[0x8] FakeAlert-EL (Low)

[0x9] BackDoor-DTX (Low)

[0xA] Downloader-BRM (Low)

LWN.net comments

This feed contains the text of all comments posted to the LWN.net site.

[0x1] Transport-level encryption with Tcpcrypt

[0x2] Ubuntu 10.10 Beta (Maverick Meerkat) Released

[0x3] GNU/Linux powers state-of-the-art hearing aid research

[0x4] Quotes of the week

[0x5] Ubuntu 10.10 Beta (Maverick Meerkat) Released

[0x6] Ubuntu 10.10 Beta (Maverick Meerkat) Released

[0x7] Ubuntu 10.10 Beta (Maverick Meerkat) Released

[0x8] GNU/Linux powers state-of-the-art hearing aid research

[0x9] Ubuntu 10.10 Beta (Maverick Meerkat) Released

[0xA] Ubuntu 10.10 Beta (Maverick Meerkat) Released

Shon Harris' CISSP Blog

Certified Information Systems Security Professional

[0x1] Viruses, Malware And Various Threats To Mobile Devices (Part 4 of 5)

[0x2] Mobile Devices - Access Control, Wireless Network Risks And Security Implementations (Part 3 of 5)

[0x3] Mobile Devices - Security Implications and Countermeasures (Part 2 of 5)

[0x4] Mobile Devices – Definition And Security Issues (Part 1 of 5)

[0x5] Changes to the CISSP Exam

[0x6] A Satire of the Security Divas of Today

[0x7] Security Issues of Social Network Sites

[0x8] Web Application Security Testing Webcast hosted by Shon Harris

[0x9] CISSP Braindump And Shortcuts - Is It Really Smart To Take The Road More Frequently Travelled?

[0xA] Risk Management - What Is The Real Score In The Management Of Risks

lkml.org :

lkml.org - the realtime linux kernel mailinglist archive

[0x1] Re: [PATCH] b43: Add SDIO_DEVICE() for EW-CG1102GC

[0x2] Re: [PATCH 0/3] b43: logging cleanups

[0x3] Re: [PATCH net-next] MAINTAINERS: b43 updates

[0x4] Re: mmotm 2010-06-03-16-36 uploaded

[0x5] Re: gpiolib: irq functions not implemented on x86

[0x6] Re: [PATCH -mm] ssb: open-code dma_alloc_coherent

[0x7] Re: [PATCH -mm] ssb: open-code dma_alloc_coherent

[0x8] [PATCH] ssb: Fix CONFIG_SSB_SDIOHOST typo

[0x9] Re: [PATCH] strcmp: fix overflow error

[0xA] Re: 64-bit DMA problems with BCM4312 using b43

DarkReading - All Stories

DarkReading

[0x1] Tech Insight: Retooling Vulnerability Scanning, Penetration Testing for IPv6

[0x2] Five Ways to Stop Mass SQL Injection Attacks

[0x3] IPv6 Transition Poses New Security Threats

[0x4] Networked Scanners Offer A Window Into The Enterprise, Researcher Says

[0x5] U.S. Businesses Could Lose Up To $1 Billion In Online Banking Fraud This Year

[0x6] Product Watch: Verizon, VMware Team Up With Hybrid Cloud Service

[0x7] Could USB Flash Drives Be Your Enterprise's Weakest Link?

[0x8] Delaware Contractor Mistakenly Posts Personal Data Of 22,000 Employees

[0x9] IBM Corrects Unpatched Vulnerability Numbers After Google Challenge

[0xA] Major Disruption of Pushdo Botnet Wasn't The Original Goal

Rational Survivability

PLEASE NOTE: I HAVE PERMANENTLY MOVED MY BLOG TO http://www.rationalsurvivability.com/blog <-- All these posts/comments have been moved there and all new posts since May 2009 appear there.

[0x1] IMPORTANT REMINDER: My Blog and RSS Feed Have Moved To http://www.rationalsurvivability.com/blog

[0x2] IMPORTANT REMINDER: My Blog and RSS Feed Have Moved

[0x3] IMPORTANT: Moving My Blog & RSS Feed

[0x4] BeanSec! Wednesday, March 18, 2009 - 6PM to ?

[0x5] How To Be PCI Compliant in the Cloud...

[0x6] On the Overcast Podcast with Geva Perry and James Urquhart

[0x7] More On Clouds & Botnets: MeatClouds, CloudFlux, LeapFrog, EDoS and More!

[0x8] Source Boston - Video Interviews of Security Rockstars...

[0x9] Oh Noes: We Can't Monitor/Protect Against Intra-VM Traffic!

[0xA] Sun vs. Cisco? I'm Getting My Popcorn...

CSOONLINE.com - Supply Chain Security

[0x1] Supply Chain Security Threats: 5 Game-Changing Forces

[0x2] SLIDESHOW: Chemical Safety Training

[0x3] Chemical Spill Response: How Dow is Training Small Town America to Handle Hazmat Emergencies

[0x4] Swine Flu: How to Make Biz Continuity Plans

[0x5] UPDATED: Pandemic Preparedness Primer

[0x6] What New Air Cargo Security Rules Mean for Business

[0x7] CBP and Smart Containers: What Does It Know?

[0x8] 3 Global Risks to Business in 2009

[0x9] 10 Steps to Loading Dock Security

[0xA] Loading Docks in Multitenant Buildings

The MITRE Digest

The MITRE Digest is an online magazine that showcases our latest work in aviation systems, defense and intelligence, federal sector modernization, homeland security, and cutting–edge research. We cover timely topics that affect our sponsors and the national interest.

[0x1] MITRE Helps Unmanned Vehicles Shine at Army's First Robotics Rodeo

[0x2] Making Parts Layer by Layer May Improve Military Acquisition and Logistics

[0x3] Model–Driven Engineering Allows New Design Methods to Improve an Existing Aircraft System

[0x4] Flight Validation Toolset Helps Get New Flight Paths Off the Ground Quickly and Safely

[0x5] Post–9/11 GI Bill Helps Department of Veterans Affairs Expand Education Benefits

[0x6] A Good Fit: New .Org Domain Created for MITRE 25 Years Ago

[0x7] MITRE Launches Nationwide Effort to Better Manage Human Fatigue in Aviation

[0x8] "Smart Power" Helping Guide U.S. Engagement Around the Globe

[0x9] MITRE's Mission Planning Warehouse: Collaborative Development, Collaborative View

[0xA] New Smartphone App Provides Data for Counter–Insurgency Intelligence Collection

BlogInfoSec.com

An Information Security Magazine in a Blog Format

[0x1] Why the “Risk = Threat x Vulnerability x Impact” Formula is Mathematical Nonsense — Part 2

[0x2] Eureka! Professor Does FST (Functional Security Testing)

[0x3] Why the “Risk = Threats x Vulnerabilities x Impact” Formula is Mathematical Nonsense

[0x4] Decision Theory is the Foundation for Information Security Risk Management

[0x5] Simplicity or Complexity – Which is More Secure?

[0x6] Data Leak! Data Leak! … Copy

[0x7] Learned Lessons Are Not the Whole Picture

[0x8] Reply to Jack Jones on the Meaning of “Risk”

[0x9] Cyber – The 13th Event?

[0xA] The Quest for Secure and Resilient Software

CNET News.com

Tech news and business reports by CNET News. Focused oninformation technology, core topics include computers, hardware, software,networking, and Internet media..

[0x1] Apple's Ping dinged by spam

[0x2] U.N. exec: Cyberwar could be 'worse than tsunami'

[0x3] Facebook adds new remote log-out security feature

[0x4] Nigerian scam tops list of decade's online cons

[0x5] India wants local servers from RIM, Google, Skype

[0x6] Twitter plans to record all links clicked

[0x7] China requires cell phone subscriber IDs

[0x8] Quantum crypto cracked, researchers say

[0x9] Sweden reopens rape probe of Wikileaks founder

[0xA] Cars: The next hacking frontier?

Twitter / steaIth

Twitter updates from Sebastian Krahmer / steaIth.

[0x1] steaIth: @fygrave are you hosting malcon?

[0x2] steaIth: 743C de-announced :-)

[0x3] steaIth: sure,always interested in feedback.a list of working and notworking devs would be cool.wonder why it shouldnt work on backflip though

[0x4] steaIth: It has been texted on the nexus, but any other devices are probably fine.

[0x5] steaIth: @jwbumgardner droid2? thx.its done then

[0x6] steaIth: @i0n1c its that shit keeping talented programmers away from doing great things.ROP *really* means return to keyboard+console!

[0x7] steaIth: remember: @lcamtuf is not using twitter. thank you :)

[0x8] steaIth: Some #droid2 present. please test #android #jailbreak

[0x9] steaIth: If you want #droid2 #jailbreak,send me output of some commands.please see blog. #android

[0xA] steaIth: 4008270e92fb822d5d7c4b8b2dc2b7fb vs. 674b0e1963b49df2776833609544f7c2a359a8ed

Cisco Security Advisories

Cisco Security Advisories (the 40 most recent advisories)

[0x1] Cisco IOS XR Software Border Gateway Protocol Vulnerability

[0x2] Cisco Unified Communications Manager Denial of Service Vulnerabilities

[0x3] Cisco Unified Presence Denial of Service Vulnerabilities

[0x4] Cisco IOS Software TCP Denial of Service Vulnerability

[0x5] Multiple Vulnerabilities in the Cisco ACE Application Control Engine Module and Cisco ACE 4710 Application Control Engine

[0x6] SQL Injection Vulnerability in Cisco Wireless Control System

[0x7] SNMP Version 3 Authentication Vulnerabilities

[0x8] Multiple Vulnerabilities in Cisco Firewall Services Module

[0x9] Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances

[0xA] CDS Internet Streamer: Web Server Directory Traversal Vulnerability

Palisade Magazine : Application Security Intelligence

A publication by Paladion Networks

[0x1] Quiz: Specifying life time for a webpage

[0x2] SAP Baseline Security Audit

[0x3] Defeating Encryption in Some Thick Clients

[0x4] Database Links Security

[0x5] Quiz: Proposal to amend Same Origin Policy

[0x6] Cache Control Directives Demystified

[0x7] The Payment Application Data Security Standard (PA DSS)

[0x8] Defend against Reverse Engineering

[0x9] Quiz: Cross Site Printing

[0xA] CSRF - The hidden menace

Cisco Learning Home : All Content - Security

All Content in Security

[0x1] Require Help....

[0x2] vpn + ramote access issue

[0x3] ICMP question, why is it denying ping ??

[0x4] Need some help with VPN please help me......

[0x5] CISCO NAC - clients getting pop-up messages ? how to fix it !~!!!!

[0x6] What ASA Software Version does the Test Simulator use?

[0x7] ASA vs PIX

[0x8] Cisco WCCP Security

[0x9] ASA - Inspect ICMP with PMTUD

[0xA] ASA Guidelines - VLANS

Evilcodecave's Weblog

Just another RCE Weblog

[0x1] Definitively Moved to Blogspot

[0x2] Fast Overview of SpyEye

[0x3] Rootkit Agent.adah Anatomy and Executables Carving via Cryptoanalytical Approach

[0x4] PHP/Spy.Bull Cryptanalysis of Encryption used and Threat Analysis

[0x5] Siberia ExploitPack and PDF Exploit Analysis

[0x6] DNAScan Malicious Network Activity Reverse Engineering

[0x7] Avast aswRdr.sys Kernel Pool Corruption and Local Privilege Escalation

[0x8] PHPSpyScanBot Analysis

[0x9] [Crimeware] Researches Reversing about Eleonore Exploit Pack

[0xA] [Crimeware] Researches and Reversing about Eleonore Exploit Pack

IHS

Home of Johnny Long and Hackers for Charity, Inc

[0x1] Announcing Hack3rcon!

[0x2] A SUitCaSE!!!!1

[0x3] Google Sound

[0x4] Jinja Linux Users Group (LUG) Meeting Aug 2010

[0x5] mEducation?

[0x6] I sit.

[0x7] Forums online

[0x8] Balanced diet

[0x9] @DEFCON

[0xA] Lights out!

Hak5 - Technolust since 2005

Trust Your Technolust

[0x1] Episode 803 – Ampache, Boxee and Wireless Virtual Machines

[0x2] Episode 802 – Android App Inventor & Boxee Development Part 2, and SDExplorer

[0x3] Episode 801 – Android App Inventor, Building a Boxee Box, Ubuntu 10.10

[0x4] Episode 726 – Jailbreaking, VirtualBox PHP GUIs, bandwidth throttles and python streaming scripts

[0x5] Episode 725 – DEFCON 18

[0x6] Episode 724 – Bypassing NSFW filters and Android Packet Sniffing

[0x7] Hak5 5 year anniversary party

[0x8] Episode 723 – Fun with Android Root and Monitoring your PC with Dropbox

[0x9] Episode 722 – Virtual Private Networks using your Google account and chipset woes

[0xA] Episode 721 – Water Cooling, EXIF data mining and 25GB free cloud storage

SecurityInfoWatch Forums - Discussions for the Security Professional

Security discussion forums on topics of security management, policies, guard services, loss prevention, homeland security, alarm systems, network video, security jobs

[0x1] tsk, tsk, tsk, Florida security officers make the news

[0x2] Tactical Officers

[0x3] Prepaid Visa/Mastercard

[0x4] SmartGuard 3-in-1 Outdoor security system (light+audio warning+video recording)

[0x5] Mom Was Right

[0x6] Unarmed Security Officer lucky to be alive

[0x7] Choosing the right security cameras

[0x8] How does a security company really work?

[0x9] Greetings from Phoenix, Az

[0xA] Cover up?

NYT > Cryptography

News about cryptography, including commentary and archival articles published in The New York Times.

[0x1] Debate Over P vs. NP Proof Highlights Web Collaboration

[0x2] Universities Spar Over Disappearing Electronic Messages

[0x3] Goodbye, Passwords. You Aren’t a Good Defense.

[0x4] Adding Math to List of Security Threats

[0x5] Studios’ DVDs Face a Crack in Security

[0x6] A Cryptologist Takes a Crack at Deciphering DNA’s Deep Secrets

[0x7] Graduate Cryptographers Unlock Code of 'Thiefproof' Car Key

[0x8] TECHNOLOGY; Researchers Develop Computer Techniques to Bring Blacked-Out Words to Light

[0x9] A Simpler, More Personal Key To Protect Online Messages

[0xA] Light Study Backs Teleportation, But Don't Try Beaming Up Yet

Suspekt...

A Blog About Code, Information Security, PHP And More

[0x1] Month of PHP Security 2010 has begun…

[0x2] SyScan-Workshop: Advanced PHP Auditing at Source and Bytecode Level

[0x3] MOPS CFP: Deadline Extension - April 18, 2010

[0x4] MOPS - Zend Webinar: Secure Application Development with the Zend Framework

[0x5] Zend Webinar: Sichere Applikationen auf Basis des Zend Frameworks

[0x6] Suhosin-Patch 0.9.9.1

[0x7] Month of PHP Security - Blog Post Drawing

[0x8] Patch breaks Suhosin Security Feature in Debian Unstable/Testing

[0x9] Month of PHP Security 2010 - CALL FOR PAPERS

[0xA] Sneak Preview: Month of PHP Security 2010

blog.fon.com

wifi for everyone

[0x1] Follow Fon on Twitter and Catch the Code!

[0x2] Free shipping on Foneras in August

[0x3] And Now the Good News: Fonera SIMPL at TEDGlobal 2010

[0x4] Interviewing FON members in Switzerland

[0x5] FON Summer Sale starts today with 25% off the Fonera 2.0n

[0x6] BT Ends Limits on WiFi Access

[0x7] Technicolor WiFi-enabled cable modems and broadband gateways are FON-ready

[0x8] From Beggar to Fonero – Model Gets Rescued by FON

[0x9] New FON battery case lets Foneros in Hong Kong and Malaysia use iPhones up to 2x longer

[0xA] Peek Powered by Spotnik, Now Available in Europe for 99€

Podcasts

Listen to the latest Podcasts from Veracode

[0x1] Detecting "Certified Pre-owned" Software and Devices

[0x2] Application Outsourcing Podcast

[0x3] InfoSec Europe Conference

[0x4] PCI Primer - Introduction to PCI Compliance

[0x5] Veracode Announces Technology and Service Breakthroughs

[0x6] Veracode Talks Security with InfoWorld

[0x7] Automated Vulnerability Assessment

[0x8] How Vulnerabilities Get Into All Software

[0x9] Software Security Testing: Strengthening Your Defense Strategy

[0xA] Software Security Testing: Demanding Software Security

Daily Dave

This technical discussion list covers vulnerability research, exploit development, and security events/gossip. It was started by ImmunitySec founder Dave Aitel and many security luminaries participate. Many posts simply advertise Immunity products, but you can't really fault Dave for being self-promotional on a list named DailyDave.

[0x1] Cracking video is up

[0x2] ColdFusion Directory Traversal

[0x3] nullcon Goa dwitiya (2.0) Call For Papers

[0x4] Re: SELinux, was Re: X11 -> Root? (Qubes square rooted)

[0x5] Re: Commission on Cybersecurity for the 44th Presidency and your right to cyber (security)

[0x6] SELinux, was Re: X11 -> Root? (Qubes square rooted)

[0x7] Rooted CON 2011 - Call for Papers

[0x8] Re: Commission on Cybersecurity for the 44th Presidency and your right to cyber (security)

[0x9] SILICAU Lightning Demo (Wireless key cracking)

[0xA] Re: Commission on Cybersecurity for the 44th Presidency and your right to cyber (security)

Headquarter, Linux, Network security and research

[0x1] Security threats Toolkit

[0x2] Unusual disk latency: The other day I met a friend and between...

[0x3] Untangle 7.1

[0x4] Lynis 1.2.9

[0x5] Wireshark 1.2.5

[0x6] Multiple Cisco WebEx WRF Player Vulnerabilities

[0x7] US drones hacked by Iraqi insurgents

[0x8] Video Interview with MacBook Bullet Girl

[0x9] Android Forensics

[0xA] Jobs for hackers

Ed Smiley's Blog

IT and Infosec Security Ramblings

[0x1] Bookmarks for June 30th through August 5th

[0x2] Bookmarks for June 26th through June 30th

[0x3] Bookmarks for June 10th through June 23rd

[0x4] Bookmarks for May 28th through June 9th

[0x5] Bookmarks for May 20th through May 27th

[0x6] Bookmarks for April 19th through May 19th

[0x7] Bookmarks for April 2nd through April 18th

[0x8] Bookmarks for April 1st through April 2nd

[0x9] Bookmarks for March 18th through March 31st

[0xA] Interesting tidbits from this week

CSOONLINE.com - Global Security

[0x1] Mexican trucking, tariffs, security and safety

[0x2] How Your Business Can Avoid Being Collateral Damage In A Cyber War

[0x3] World Cup security: Guard labor strike was a game changer

[0x4] World Cup security: Preparing for the unexpected

[0x5] Corporate Espionage: Tomorrow Arrived Yesterday

[0x6] Friday Quiz: Google Versus Everybody

[0x7] Managing Security Overseas: Contact and Coordination with Local, Regional, and International Authorities

[0x8] Counterfeit Money: Still Going Strong

[0x9] The Pirate of Prague, Foreign Corrupt Practices, and You

[0xA] Chinese Teen Beaten to Death at Internet Addict Camp

DEFCON Announcements!

DEFCON is the world's largest annual hacker convention, held every year in Las Vegas, Nevada. The first DEFCON took place in June 1993. DEF CON is renowned for the "arcane arts" of drinking, socializing, debugging, and crowd control. DEFCON is what you make of it, so get involved and help the community grow. This Feed will keep you up to date with some announcements surrounding pre and post con events, references to DEFCON in the news, and other errata. For the most up to date information visit or subscribe to the rss feeds on the forums (http://forum.defcon.org/) See http://www.defcon.org/ for more details, discussion forums, past speeches, and planning for the next year.

[0x1] DEF CON 18 Press And Early Video!

[0x2] DEF CON 18 Archive Page is Live!

[0x3] DEF CON 18 Post Con Update

[0x4] PhD Dissertation Study in the Contest Area

[0x5] New Speakers Corner!

[0x6] Be the Match at DEF CON

[0x7] DEF CON 18 Secure Wifi

[0x8] More New Speaker's Corner!

[0x9] New Speaker's Corner

[0xA] Another New Speaker's Corner

Techworld.com Operating Systems

Latest IT articles from Techworld's Operating Systems channel

[0x1] Top 10 Linux distributions for business

[0x2] Apple iOS devices outnumber Android 6 to 1 on web

[0x3] Hurricane Earl is on its way - some IT tips to help

[0x4] Apple unveils new version of AppleTV

[0x5] 3D content is king at IFA trade show

[0x6] Novell ships Suse Linux for VMware

[0x7] The first digital 'social book' is launched

[0x8] Palm WebOS 2.0 beta released to developers

[0x9] Google's Realtime Search engine more powerful then Twitter's search for status updates

[0xA] Microsoft claims big developer interest in Windows Phone 7

Free and Useful Online Resources for Designers and Developers

Free and useful online resources for designer and developers

[0x1] The 7 Must-Have Apps For Android Phones To Make Your Lives Easier

[0x2] Excellent Mockup And Wireframing (9) Web Apps Which You Would Love To Know

[0x3] WorkingPoint Manages Business Transactions Efficiently

[0x4] Thank You Our Valued Sponsors For Being With Us In The Month Of August

[0x5] Take Advantage Of osTicket, A Widely-used Open Source Support Ticket System

[0x6] The Robust Collection Of (50) Mindblowing Icon Sets For Your Next Design

[0x7] Adding Credibility Signs To Have A Profitable eCommerce Website

[0x8] 5 Free Tools To Download Or Create Movie Subtitles

[0x9] Get Your Own Online Diary That Lets Your Express Yourself Fully With Daileez

[0xA] OffiSync Supercharges Microsoft Office By Enabling Real-time Co-Authoring And Google Apps Integration

Heorot.net

Learning and Managing Penetration Testing in Today's Chaotic World

[0x1] “Going-to-DefCon” Heorot.net Course Discounts

[0x2] Course Updates

[0x3] Interview on PaulDotCom

[0x4] “Best Of” Hakin9 Magazine

[0x5] Book On Sale Now!

[0x6] DefCon 17 Speech

[0x7] Book Deal Announced

[0x8] Hackerdemia Project

[0x9] IRC Chat and Webinars

[0xA] Hakin9 Magazine article

What's New

What's New at FIRST website

[0x1] FIRST Beijing TC Program Updated!

[0x2] FIRST would like to welcome two new teams this month!

[0x3] FIRST Volunteer Recognition

[0x4] Welcome to the new FIRST SC and Board of Directors members

[0x5] WELCOME to our new teams approved in May and THANK YOU to their sponsors:

[0x6] Annual Global Risk Summit at Gleneagles Resort in Perthshire, Scotland

[0x7] FIRST would like to welcome our newest member team

[0x8] FIRST would like to welcome our newest members approved in March:

[0x9] The 2010 Program is now available online!

[0xA] FIRST welcomes three new teams

ZeroDay Labs blog

Application security testing, analysis, and metrics

[0x1] Deadly Combo: Zero Day Application Vulnerability + OS Vulnerability = Attacker Win

[0x2] Website Vulnerability Research and Disclosure

[0x3] Which Tastes Better for Security, Java or .NET?

[0x4] HTML5 Security in a Nutshell

[0x5] MC Frontalot Releases “Zero Day”

[0x6] Malicious Mobile Code Meets Exploit Selling

[0x7] Veracode at RSA 2010

[0x8] Mobile Malware Counterpoints

[0x9] In Which We Dispel Misconceptions

[0xA] Is Your BlackBerry App Spying on You?

honeyblog

A blog on honeypots, honeynets, and more...

[0x1] The Last Line of Defense - http://tllod.com

[0x2] Call for Papers: EC2ND'10

[0x3] Chaosradio Express #155

[0x4] Challenge 4 of the Forensic Challenge 2010 - VoIP

[0x5] "Is the Internet for Porn? An Insight Into the Online Adult Industry"

[0x6] USENIX LEET'10 & RAID 2010

[0x7] Technical Report: "Abusing Social Networks for Automated User Profiling"

[0x8] Twitter Spamdetector Service

[0x9] "Inspector Gadget: Automated Extraction of Proprietary Gadgets from Malware Binaries"

[0xA] Waledac Infection Check

The Hacker's Choice - Freeworld News

News around The Hacker's Choice including releases, papers, exploits and other activities

[0x1] Another small update to thc-ipv6 - have fun ....

[0x2] Finally a new version of hydra is available and it is mai...

[0x3] A new version of the thc-ipv6 attack toolkit is available...

[0x4] New update to thc-ipv6 is comine in June/July.

[0x5] Found vmap FINAL during cleanup!

[0x6] THC is hosting a #bluebox party at har2009.

[0x7] THC is proud to release a video and a tool to backup data...

[0x8] BLOG: The risk of ePassports and RFID

[0x9] BLOG: Story from the past of how to scan the internet

[0xA] THC is proud of hosting BlueMaho, a Bluetooth Security Te...

Log visualization and log management as seen by Raffael Marty

[0x1] links for 2010-07-27

[0x2] All the Data That’s Fit to Visualize

[0x3] All the Data That’s Fit to Visualize – SOURCE Boston 2008

[0x4] Common Event Expression – CEE

[0x5] Maturity Scale for Log Management and Analysis

[0x6] Old Posts – New Home

[0x7] Recent Blog Posts on Django, Security, Cloud, and Visualization

[0x8] RSA Security Conference – Cloud the Logging Killer App?

[0x9] Applied Security Visualization Book seen in Singapore

[0xA] CISCO Subnet Blogging in May

Tactical Web Application Security

Tac-ti-cal: of or relating to combat tactics: of or occurring at the battlefront <a tactical defense>

[0x1] Moving to the Trustwave SpiderLabs Research Team

[0x2] Spammers using Twitter's Update Status API

[0x3] Back to the Future - Economies of Scale Techniques from 2008 Still in Use Today

[0x4] Zone-H Defacement Statistics Report for Q1 2010

[0x5] BSIMM2 and WAFs

[0x6] Botnet Herders Targeting Web Servers

[0x7] Apache.org Compromised Through XSS

[0x8] German Government Pays Hacker For Stolen Bank Account Data

[0x9] WAF Confusion Continues

[0xA] Secure Coding Practices Survey Results

SecuObs.com

Observatoire de la securite Internet

[0x1] Best Practices in Javascript Library Design

[0x2] Backtrack DNS Zone Transfer

[0x3] pfsense parte 2

[0x4] Hacker Jeopardy at DEFCON 18 closing ceremonies

[0x5] WiFiCake NG In WeakNet Linux version 4 1k

[0x6] Windows PE Creating A Image

[0x7] BrainGate Lets Your Brain Control the Computer

[0x8] Apple Mac OS X Leopard A Guided Tour Pt 1

[0x9] How to hack an iPod on a mac Better Version

[0xA] Ampache Boxee and Wireless Virtual Machines Hak5

Splunk Blogs

[0x1] Event Correlation

[0x2] What’s New on Splunkbase? PCI, Nagios, and Mapping Galore!

[0x3] SplunkTalk – #12 – Double rainbow all the way across the podcast

[0x4] SplunkTalk – #11 – The boys are back in town!

[0x5] Another day, another Splunk Answers milestone

[0x6] VIDEO: Search Tips & Tricks for Windows Users

[0x7] Can’t wait for the next .conf!

[0x8] SplunkTalk – #10 – The Perfect Decimal – Live from Splunk User.Conf 2010

[0x9] How to use Notifo to receive Splunk alerts on your iPhone

[0xA] Splunk is a Verb – Splunking Perforce Data (Part 2)

Network World on Firewalls

The latest firewall news, analysis and reviews on NetworkWorld.com.

[0x1] Eight great virtual appliances for VMware, free for the downloading

[0x2] Organizing sensitive data in the cloud

[0x3] Microsoft Binary Planting Bug: What You Need to Know

[0x4] Microsoft Applications Plagued by Binary Planting Flaw

[0x5] Patch Critical Security Flaws in Adobe Reader, Acrobat

[0x6] How Did My Protected PC Get Infected?

[0x7] Apple Kickback Scheme: Don't Let This Happen to You

[0x8] Malware Call to Arms: Threat at All-Time High and Rising

[0x9] Protect Your PC With Critical Adobe Patches

[0xA] Workarounds: 5 ways employees try to access restricted sites

Twitter / mssecurity

Twitter updates from Microsoft Security / mssecurity.

[0x1] mssecurity: MS10-042 - Critical: Vulnerability in Help and Support Center Could Allow Remote Code Execution (2229593) http://bit.ly/cV2sFK

[0x2] mssecurity: MS10-043 - Critical: Vulnerability in Canonical Display Driver Could Allow Remote Code Execution (2032276) http://bit.ly/dqvKIZ

[0x3] mssecurity: MS10-044 - Critical: Vulnerabilities in Microsoft Office Access ActiveX Controls Could Allow Remote Code Execution... http://bit.ly/aMyhKH

[0x4] mssecurity: MS10-045 - Important: Vulnerability in Microsoft Office Outlook Could Allow Remote Code Execution (978212) http://bit.ly/9VowsD

[0x5] mssecurity: Microsoft security updates for November 2009 - http://bit.ly/35QaKW

[0x6] mssecurity: Sorry all, automated update pushing hasn't been working too well the last few times. Working on it.

[0x7] mssecurity: Microsoft security updates for October 2009 - http://bit.ly/RgyPY

[0x8] mssecurity: Microsoft security updates for July 2009 http://bit.ly/YUzPo

[0x9] mssecurity: Microsoft security updates for June 2009 http://tinyurl.com/mx8dxn

[0xA] mssecurity: Vista Service Pack 2 Standalone downloads now available - 32-bit http://sn.im/ismow, 64-bit http://sn.im/ismps

Cisco Security Notices

Cisco Security Notices (the 40 most recent notices )

[0x1] Cisco IPSec VPN Implementation Group Name Enumeration Vulnerability

[0x2] Crafted DNS Packet Can Cause Denial Of Service

[0x3] Cisco IPsec VPN Implementation Group Password Usage Vulnerability

[0x4] Response to BugTraq - Cisco Clean Access Agent (Perfigo) Bypass

[0x5] CSS SSL Authentication Bypass

[0x6] ZOTOB and WORM_RBOT.CBQ Mitigation Recommendations

[0x7] Response to Full-Disclosure - Potential Denial of Service Bug in Cisco Pix Firewall IOS 6.2.2 and 6.3.(3.102)

[0x8] Cisco 802.1x Voice-Enabled Interfaces Allow Anonymous Voice VLAN Access

[0x9] Vulnerability in a Variant of the TCP Timestamps Option

[0xA] W32.BLASTER Worm Mitigation Recommendations

Network Security Blog

Join me as I spend 30 minutes each week talking about the computer security issues facing us today. I discuss privacy, hacking, malware and the Payment Card Industry (PCI) Data Security Standards.

[0x1] Network Security Podcast, Episode 210

[0x2] Defcon 2010 Interview: Joe Grand

[0x3] Certified Application Security Specialist in job description

[0x4] May see you at HacKid

[0x5] Network Security Podcast, Episode 209

[0x6] Black Hat 2010: Branden Williams, RSA

[0x7] How would I write a framework to replace PCI?

[0x8] Review of PCI-DSS 2.0

[0x9] PCI 2.0 Summary of Changes

[0xA] Network Security Podcast, Episode 208

SecurityFocus News

SecurityFocus is the most comprehensive and trusted source of security information on the Internet. We are a vendor-neutral site that provides objective, timely and comprehensive security information to all members of the security community, from end users, security hobbyists and network administrators to security consultants, IT Managers, CIOs and CSOs.

[0x1] News: Change in Focus

[0x2] News: Twitter attacker had proper credentials

[0x3] News: PhotoDNA scans images for child abuse

[0x4] News: Conficker data highlights infected networks

[0x5] Brief: Google offers bounty on browser bugs

[0x6] Brief: Cyberattacks from U.S. "greatest concern"

[0x7] Brief: Microsoft patches as fraudsters target IE flaw

[0x8] Brief: Attack on IE 0-day refined by researchers

[0x9] News: Monster botnet held 800,000 people's details

[0xA] News: Google: 'no timetable' on China talks

Danger Room

What's Next in National Security

[0x1] Petraeus Quietly Disses ‘Human Terrain’

[0x2] Professor McChrystal’s Lectures: ‘Navigating Politics, Media,’ Irony

[0x3] Pentagon Bulks Up Yemen’s Arsenal as Shadow War Grows

[0x4] Why Bomb-Proofing Robots Might Be a Bad Idea (Updated)

[0x5] Sailors, Contractors Face Off Over ‘Hostage’ Network

[0x6] Vets Get Ecstasy to Treat Their PTSD

[0x7] A Month In, Pakistan Flood Relief Efforts Stuck at 1.0

[0x8] Spin War Shift: Military Now Bragging About Afghan Air Strikes

[0x9] White House: Iraq Troops Are Coming Home In 2011. Period.

[0xA] Darpa’s Star Hacker Looks to WikiLeak-Proof Pentagon

Securityvulns news channel

securityvulns.ru vulnerabilities newsline

[0x1] Переполнение буфера в библиотеке libHX

[0x2] Двойное освобождение памяти в библиотеке OpenSSL

[0x3] Обратный путь в каталогах libwww-perl

[0x4] Подмена DLL во многих приложениях Microsoft Windows, дополнено с 26.08.2010

[0x5] DoS против Apple WebKit / Safari

[0x6] DoS против bogofilter

[0x7] Целочисленные переполнения в libgdiplus / Mono

[0x8] Выполнение кода через Apple QuickTime

[0x9] Cводка уязвимостей безопасности в Web-приложениях (PHP, ASP, JSP, CGI, Perl)

[0xA] Многочисленные уязвимости безопасности в снифере Wireshart, дополнено с 14.06.2010

Internet Security News and Analysis

News, commentary and analysis on the threat to our Internet-based infrastructures and to your home computer. Track trends in the cyber threat and stay up to speed on the latest measures you can take to stop the threat to your systems.

[0x1] MSNBC - Cyber attacks on corporations are rising

[0x2] Big Security Guns Should Aim Carefully at Adware, Spyware

[0x3] Ten Not-So-Simple Rules for Using the Internet

[0x4] Networks and Netwars: The Future of Terror, Crime, and Militancy

[0x5] Hackers poison DNS

[0x6] Boston.com / Business / Payroll website still not secured

[0x7] Hackers invaded state Web sites 72 times in five years

[0x8] Hackers invaded state Web sites 72 times in five years

[0x9] Cyber warriors anticipate center

[0xA] Adware maker joins federal privacy board

MITRE Career News

The MITRE Career News feed offers stories about working at MITRE, from our popular Employee Spotlight features, to useful information about upcoming recruiting events and more.

[0x1] Software Engineer Contributes to Innovative Aviation Safety Program

[0x2] Conducting a Symphony of Expertise at MITRE

[0x3] MITRE's Sponsor Support Expands with Clarksburg's Growth

[0x4] IDG's Computerworld Names MITRE a "Best Place to Work in Information Technology" for Sixth Year in a Row

[0x5] From Social Science to Systems Engineering

[0x6] A Home Away from Home in Tokyo

[0x7] Jumping the Generation Gap

[0x8] Doing Her Part to Strengthen U.S. Biodefense

[0x9] Moving Towards a New Standard for Healthcare IT

[0xA] Feeling Right at Home—Overseas

US-CERT Current Activity

The US-CERT Current Activity web page is a regularly updated summary of the most frequent, high-impact types of security incidents currently being reported to the US-CERT.

[0x1] Apple Releases iTunes 10

[0x2] Google Releases Chrome 6.0.472.53

[0x3] Insecure Loading of Dynamic Link Libraries in Windows Applications

[0x4] VMware Releases Updates for ESX Service Console Packages

[0x5] Cisco Releases Security Advisory for IOS XR Software Border Gateway Protocol

[0x6] RealNetworks Releases Update to Address Vulnerabilities in RealPlayer

[0x7] Cisco Releases Advisories for Unified Communications Manager and Unified Presence

[0x8] APWG Fax Back Phishing Education Program

[0x9] Adobe Releases Security Bulletin for Shockwave Player

[0xA] Apple Releases Security Update 2010-005

PortSwigger.net - web application security

[0x1] Comparing web application scanners, part 2

[0x2] Comparing web application scanners

[0x3] Web Application Hacker's Handbook - Live Edition

[0x4] Intruder botox

[0x5] Burp Suite v1.3 released

[0x6] MilkSwigger

[0x7] [V13P] Pro beta version now available

[0x8] [V13P] Other bits and pieces

[0x9] [V13P] Target analyser

[0xA] [V13P] Exporting of request information

GlobalSecurity.org

Reliable Security Information from GlobalSecurity.org.

[0x1] USAF transfers northern airspace to Iraq

[0x2] State Department Set To Increase Presence In Iraq

[0x3] General Seeks to Build Professional Afghan Forces

[0x4] Gates Confident Afghan Strategy Working

[0x5] Gates Sees ‘Positive Direction’ in Afghanistan

[0x6] US Defense Chief Sees Progress In Afghan South

[0x7] Petraeus Explains Afghanistan Strategy

[0x8] Bombings Target Pakistan Religious Minorities

[0x9] Suicide Bombing at Pakistan Shi'ite Rally Kills 53

[0xA] Announcement of Japanese Sanctions on Iran

Emerging Threats

Emerging Threats - Signatures for All!

[0x1] Emerging Threats Announces Call for Developers to Create New and Improved Rule Set

[0x2] Snorby 1.4 Available!

[0x3] Suricata 0.9.1 RC2 Available!

[0x4] Next OISF Brainstorming Meeting Scheduled

[0x5] Suricata RC1 Available!

[0x6] Suricata 0.8.2 Released!

[0x7] Pulled Pork 0.4.0 Released! The Drunken Leprechaun

[0x8] The OISF Welcomes Edenwall to the Consortium

[0x9] OISF Suricata Development Meeting Update

[0xA] Bothunter 1.5 Released!

Moreover Technologies - Computer security news

Computer security news - more than 340 categories of real-time RSS news feeds

[0x1] Penny Stocks To Trade Now - Sponsored Link

[0x2] Spammers Take Over Apple's New Ping Social Network

[0x3] Facebook Glitch Let Spammer Post to Walls (PC World)

[0x4] New Phishing Scam Targets Taxpayers

[0x5] Facebook glitch let spammer post to walls

[0x6] Facebook glitch let spammer post to walls

[0x7] 'Voice' becomes an application on AT&T's Enterprise VPN

[0x8] Snoop Dogg jumps on anti-cybercrime wagon

[0x9] Snoop Dogg jumps on anti-cybercrime wagon

[0xA] DHS to expand cybersecurity program for researchers

Adventures in Security

Commentary, reviews, and tips relevant to anyone responsible for information security. Including how to build and manage a security program, editorials about the state of information security, and do's and don't's based on my 26 years of IT experience.

[0x1] Firefox Sync: Think Twice before Use

[0x2] Looks aren't everything...

[0x3] Google, wireless networks, and ethics...

[0x4] Twitter down... Why should you care?

[0x5] Give Facebook a break...

[0x6] Integrated Malware

[0x7] Patch, patch, patch... and then patch

[0x8] Media management must include printers

[0x9] So, who is liable for negligence?

[0xA] Security double-standards are still a bad idea

Information Security Resources

Part of the Infosec Island ™ Network

[0x1] Infosec Island Security News Digest for 9-3-2010

[0x2] Infosec Island Security News Digest for 9-2-2010

[0x3] Infosec Island Security News Digest for 9-1-2010

[0x4] Infosec Island Security News Digest for 8-31-2010

[0x5] Infosec Island Security News Digest for 8-30-2010

[0x6] Infosec Island Security News Digest for 8-27-2010

[0x7] Infosec Island Security News Digest for 8-26-2010

[0x8] Infosec Island Security News Digest for 8-25-2010

[0x9] Infosec Island Security News Digest for 8-24-2010

[0xA] Infosec Island Security News Digest for 8-23-2010

Government Technology Product News

Government Technology: News: Products

[0x1] New Products from Panasonic, ProClip, Rugged Notebooks

[0x2] Desktop Virtualization in Denton, Texas, Saves Money, Gives Employees Mobility

[0x3] Product Review: Able Planet NC300 Active Noise-Canceling Headphones

[0x4] New Products from Motion Computing, BlueAnt, Lenovo

[0x5] Practical iPhone Apps

[0x6] New Federal Energy Policy May Result in 1 Million Electric Vehicles on U.S. Roads

[0x7] Industry Experts Detail Current Technology Trends and What They See Farther Down the Road

[0x8] ESRI to Offer Free Location Data App

[0x9] Product Review: Epson B-500DN Color Ink Jet Printer

[0xA] New Products from Panasonic, Visioneer, Samsung, General Dynamics

Cryptography Blog

Cryptography Blog

[0x1] DNA cryptography?

[0x2] Self-Encrypting Hard Drives

[0x3] Diebold Audit Logs

[0x4] Black Hat DC 2009 and Research

[0x5] Data Theft and Loss - It's Inevitable So Just Be Prepared

[0x6] Electronical Health Records - Law and Technology

[0x7] SSL is not broken; MD5 is and has been for a long time

[0x8] A Basic Tip Regarding Wireless Security

[0x9] The Big Business of Computer Crime

[0xA] The Transparent Society Begins

IT Management & Trends White Papers

CIO, Emerging Technologies, and Project Management White Papers

[0x1] Insiders' Guide to Evaluating Remote Control Software

[0x2] Best-Practice Automation of Invoice Delivery from SAP(R) Solutions - Keeping Customers Satisfied While Making the Move

[0x3] The Learning Organization Goes Digital

[0x4] 10 Tips - IT Training Support

[0x5] How to Make Your IT Staff Smarter

[0x6] Improving Application Development with Digital Libraries

[0x7] Working Green with Digital Libraries - How it Can Help

[0x8] Minimizing Technology Project Delays with Digital Libraries

[0x9] How VMware Virtualization Right-sizes IT Infrastructure to Reduce Power Consumption

[0xA] Reduce Energy Costs and Go Green with VMware Virtualization

Aladdin Knowledge Systems Latest Press Releases

Aladdin Knowledge Systems Latest Press Releases - RSS Feed

[0x1] Ontario's York Regional Police Meet Canadian Government Regulations with Aladdin eToken

[0x2] Software Piracy in a Recession - Getting Kicked When You Are Down

[0x3] China's Largest CAD/CAM Software Developer Selects Aladdin HASP SRM

[0x4] HASP SRM v 3.60 Provides Automatic File Wrapping for Windows x64 Applications

[0x5] Aladdin Knowledge Systems to Hold Extraordinary General Meeting of Shareholders on February 20, 2009

[0x6] Blog: When good blogs go bad. Or, What is cool about promoting software piracy?

[0x7] Aladdin Announces HASP SRM SaaS Pass

[0x8] Aladdin Knowledge Systems Enters Into Merger Agreement with Vector Capital Affiliate

[0x9] Aladdin Knowledge Systems Comments on Media Reports about Jasmine Discussions

[0xA] Aladdin Named Finalist in 2009 SC Awards Program

LinuxSecurity.com: Slackware Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Review: The Official Ubuntu Book

[0x3] Slackware: 2010-240-01: gnupg2: Security Update

[0x4] Slackware: 2010-240-02: httpd: Security Update

[0x5] Slackware: 2010-240-05: pidgin: Security Update

[0x6] Slackware: 2010-240-06: xorg-server: Security Update

[0x7] Slackware: 2010-240-04: php: Security Update

[0x8] Slackware: 2010-240-03: kdegraphics: Security Update

[0x9] Slackware: 2010-204-01: mozilla-firefox: Security Update

[0xA] Slackware: 2010-202-03: seamonkey: Security Update

Linux Journal - The Original Magazine of the Linux Community

Since 1994: The Original Monthly Magazine of the Linux Community

[0x1] Clonezilla Live

[0x2] No Steam for Linux - Right Now

[0x3] Qt and Layouts

[0x4] As Predicted, OpenSolaris Board Disbands

[0x5] Dual Boot openSUSE USB Stick Installer

[0x6] New Wine: Running Windows Music & Sound Applications Under Wine 1.2

[0x7] Google Adds Phone Calls to Linux Gmail Use

[0x8] Linux Journal Insider - October 2010

[0x9] Virus Scan A Windows Machine

[0xA] BuGLe—OpenGL Debugging Wrapper

Why Joseph

InfoSec Thoughts Ideas and Practice

[0x1] iPHONE Apps for Information Security: article 201003

[0x2] Penetration Testing Debate: Security Controls On or Off: article 201002

[0x3] First virus removal of 2010: article 201001

[0x4]

[0x5] Looking for a New Opportunity

[0x6] Bootable BackTrack 3 USB drive that allows Persistent Changes: article 200914

[0x7] My July 4th Photo's from Plano Texas: article200913

[0x8] FOLLOW UP Hacking Practical 1: Cracking WEP: article 200912

[0x9] Hacking Practical 1: Cracking WEP: article 200911

[0xA] Script the World 2; Know Your Variables: article 200910

2600: The Hacker Quarterly

Off The Hook and Off The Wall

[0x1] Off The Hook show for September 1, 2010

[0x2] Off The Wall show for August 31, 2010

[0x3] ONE LAST CHANCE TO SAVE THE HOTEL PENNSYLVANIA

[0x4] NEXT HOPE VIDEOS AND AUDIO NOW AVAILABLE

[0x5] AUDIO AND VIDEO FROM SELECTED HOPE TALKS NOW AVAILABLE

[0x6] NEXT HOPE IPHONE APP NOW AVAILABLE

[0x7] PREREGISTRATION FOR THE NEXT HOPE CLOSING SUNDAY NIGHT

[0x8] SUMMER ISSUE OF 2600 RELEASED

[0x9] THE NEXT HOPE SPEAKER SCHEDULE IS NOW ONLINE

[0xA] 45 TALKS THAT WILL BE AT THE NEXT HOPE - STILL NOT HALF THE TOTAL!

Security

Sun Security Blog

[0x1] CVE-2010-1166 Denial of service vulnerability in Xorg server

[0x2] Mapping between CVE numbers and Solaris patches for CPU July 2010

[0x3] CVE-2010-2387 Password disclosure vulnerability in GNOME Display Manager (gdm)

[0x4] CVE-2010-1169 CVE-2010-1170 CVE-2010-1975 Multiple Vulnerabilities in PostgreSQL 8.3

[0x5] CVE-2010-1169 CVE-2010-1170 CVE-2010-1975 Multiple Vulnerabilities in PostgreSQL 8.2

[0x6] CVE-2009-2412 - Multiple integer overflows in the Apache Portable Runtime (APR) library and the Apache Portable Utility library (aka APR-util)

[0x7] CVE-2009-4247 Buffer Overflow Vulnerability in RealPlayer

[0x8] CVE-2008-5824 Buffer Overflow vulnerability in libaudiofile(3)

[0x9] CVE-2005-2475 CVE-2008-0888 Race condition, Denial of Service (DoS), and possible code execution vulnerabilities in unzip

[0xA] CVE-2010-0421 Array index error in Pango related to GDEF tables Denial of Service (DoS)

Anton Chuvakin Blog - "Security Warrior"

LogChat: Andrew Hay and Anton Chuvakin talk about logging, log management and related topics

[0x1] Monthly Blog Round-Up – August 2010

[0x2] LogChat Podcast 1: Anton Chuvakin and Andrew Hay Talk Logs

[0x3] Fun Project Honeynet Log Challenge: Log Mysteries

[0x4] Another Fun SIEM Whitepaper

[0x5] Links for 2010-08-30 [del.icio.us]

[0x6] CEE Architecture Overview FINALLY Out!

[0x7] To Those Escaping from Sinking SIEM/Log Management Vendors

[0x8] Silly Compliance Poll

[0x9] CEE Update – Aug 2010

[0xA] Log Math

Darknet - The Darkside

Ethical Hacking, Penetration Testing & Computer Security

[0x1] Malware Hash Checking Tool – Online & Offline Support

[0x2] Deutsche Post Security Cup – Bug Bounty Contest

[0x3] Windows PowerShell DNS Server Blackhole Tool – Blacklist Domains

[0x4] China Policy Could Shut Out Foreign Security Firms

[0x5] WinAppDbg – Python Instrumentation Scripting/Debugging Tool For Windows

[0x6] Windows Binary Planting DLL Preloading/Hijacking Bug

[0x7] DotDotPwn v1.0 – Directory Traversal Checker/Scanning Tool

[0x8] Intel Acquires Security Specialist McAfee For $7.68bn

[0x9] Tshark – Network Protocol Analyzer & Traffic Dumper

[0xA] Serious Vulnerability In Adobe ColdFusion Application Server

CSOONLINE.com - Security Awareness

[0x1] Put down the pink stickies to improve your career

[0x2] Security Careers: Responding to questions successfully

[0x3] 4 reasons why executives are the easiest social engineering targets

[0x4] The HacKid Conference: A kid-friendly idea whose time has come

[0x5] Are passwords a waste of time?

[0x6] How security professionals monitor their kids

[0x7] Security Consultants and Lawyers: Don't Trust Them to Manage Risks

[0x8] 10 Security Reasons to Quit Facebook (And One Reason to Stay On)

[0x9] Awareness tool: Spotting online scams

[0xA] Social Media Risks: The Basics

Leadership 101

Enhancing Global Leadership from the Inside-Out.

[0x1] Growing Your Seeds...

[0x2] Your People... Part III

[0x3] Your People... Part II

[0x4] Your People...

[0x5] Building That Institution... Part III

[0x6] Building That Institution... Part II

[0x7] Building That Institution...

[0x8] Creating That Corporate Culture...

[0x9] Coping With The Times...

[0xA] The Awakening...

Securelist / Blog

[0x1] The Winlock numbers, the Winlock laws

[0x2] Understanding Current Trends in the Fake Anti-Virus/Scareware Ecosystem

[0x3] The Winlock case - I'm taking bets!

[0x4] Twitter goes OAuth-only (Yay for security!)

[0x5] Gumblagra and a piano

[0x6] Who needs my SQL server?

[0x7] New IM Worm Squirming in Latin America

[0x8] Whitelisting - how it protects us

[0x9] Oops they did it again!

[0xA] First SMS Trojan for Android

Splunk Blogs

[0x1] Event Correlation

[0x2] What’s New on Splunkbase? PCI, Nagios, and Mapping Galore!

[0x3] SplunkTalk – #12 – Double rainbow all the way across the podcast

[0x4] SplunkTalk – #11 – The boys are back in town!

[0x5] Another day, another Splunk Answers milestone

[0x6] VIDEO: Search Tips & Tricks for Windows Users

[0x7] Can’t wait for the next .conf!

[0x8] SplunkTalk – #10 – The Perfect Decimal – Live from Splunk User.Conf 2010

[0x9] How to use Notifo to receive Splunk alerts on your iPhone

[0xA] Splunk is a Verb – Splunking Perforce Data (Part 2)

Murky

Tending to Geekiness

[0x1] Women’s Rugby World Cup – Semi Final Day

[0x2] xkcd

[0x3] Women’s Rugby World Cup – Day 3

[0x4] Scenes from a Multiverse

[0x5] The A Team Movie

[0x6] Women’s Rugby World Cup – Day 2

[0x7] Women’s Rugby World Cup – Day 1

[0x8] Women’s Rugby World Cup

[0x9] Boris Bike

[0xA] Happy Pi Approximation Day

EFA

Electronic Frontiers Australia

[0x1] Independent's Day and the Censorwall

[0x2] Are Ageing Aussies destined for the fast lane?

[0x3] How you shaped the Election

[0x4] The Necessary Broadband Network

[0x5] Coalition's Cyber-Safety policy: mostly harmless

[0x6] Ausvotes 2010: Party Policy Guide is now available

[0x7] Is the filter truly dead?

[0x8] EFA welcomes Liberal stance on filter

[0x9] Data retention: Got nothing to hide?

[0xA] EFA looking for community manager

Network World on Security

The latest security news, analysis, reviews and feature articles from NetworkWorld.com.

[0x1] Security program automatically tracks down missing patches

[0x2] Apple had two months to fix critical QuickTime bug, says researcher

[0x3] What security can learn from the $15M Sprint employee breach

[0x4] Disregard an IE 'false positive'

[0x5] Nigerian advance-fee scammer gets 12 years

[0x6] Black hole discovery could boost quantum computers

[0x7] Cloud Security Alliance offers certification

[0x8] Only 5 (all women) of 135 pass Defcon social engineering test

[0x9] Investigators find famous DJ's credit card details for sale

[0xA] Virtualize your browser to prevent drive-by malware attacks

Episteme: Belief. Knowledge. Wisdom

[0x1] Suppressing Dissent

[0x2] Byron (and influence through the media)

[0x3] Influence and Failing Kindergarten

[0x4] Return-to-Barry-White Human Exploitation

[0x5] NLP for Social Engineers

[0x6] Hacker Halted Redux

[0x7] Recap: The Hope Symposium

[0x8] Social Engineering Abounds

[0x9] Greed as a prime motivator

[0xA] Constraints and The Bandwidth Problem

F-Secure Antivirus Research Weblog

Weblog of F-Secure Antivirus Research Team

[0x1] Twitter Spam and the OAuthcalypse

[0x2] When do 258 tweets equal nearly half a million dollars?

[0x3] Phishing Attempt Alert!

[0x4] CPAlead Spam on YouTube

[0x5] DLL Hijacking and Why Loading Libraries is Hard

[0x6] Corporate Identity Theft Used to Obtain Code Signing Certificate

[0x7] I May Never Text Again: More Facebook Spam

[0x8] What's the success rate of Facebook spam?

[0x9] PS3 Jailbreak Trojan

[0xA] Malware and Critical Infrastructure

Jeremiah Grossman

A page to show up #1 on Google when searching for "Jeremiah" (Currently #5).
Only the prophet and TV show left!
I have the edge, TV show is cancelled and the prophet isn't generating any new content.

The prophet, TV show, and that pesky Owyang guy going down!
A page to show up #1 on Google when searching for "Jeremiah Grossman", and it FINALLY has!

[0x1] Our infrastructure -- Assessing Over 2,000 websites

[0x2] Website Vulnerability Assessments: Good, Fast, or Cheap - Pick Two

[0x3] Breaking Browsers: Hacking Auto-Complete (All Materials Available)

[0x4] In Firefox we can’t read auto-complete, but we can write to it (a lot)!

[0x5] Patching auto-complete vulnerabilities not enough, Cookie Eviction to the rescue

[0x6] Stealing AutoComplete form data in Internet Explorer 6 & 7

[0x7] I know who your name, where you work, and live (Safari v4 & v5)

[0x8] Third-Party Web Widget Security FAQ

[0x9] Full-Disclosure, Our Turn

[0xA] In a cyber-war, we fight for economic well-being

Securosis Blog

Main Securosis Blog

[0x1] Understanding and Selecting an Enterprise Firewall: Application Awareness, Part 2

[0x2] Friday Summary: September 3, 2010

[0x3] Understanding and Selecting an Enterprise Firewall: Application Awareness, Part 1

[0x4] Security Briefing: September 2nd

[0x5] Security Briefing: September 1st

[0x6] Incite 9/1/2010: Battle of the Bandz

[0x7] Understanding and Selecting an Enterprise Firewall: Introduction

[0x8] Security Briefing: August 31st

[0x9] Security Briefing: August 31st

[0xA] Data Encryption for PCI 101: Selection Criteria

Daniel's Blog

Information security, scuba diving and some other things I am interested in...

[0x1] That “flip” thing

[0x2] MBAs and GMAT

[0x3] Where should you buy it? Try Mustafa*!

[0x4] Bondi got flipped!

[0x5] Are you aware of the new business models which are now available on the web?

[0x6] Hello Merlion!

[0x7] Movember video!

[0x8] Do you also hate telemarketers?

[0x9] Fraud Numbers in Australia. Are we secure?

[0xA] SaaS (Software as Service) Risks

nixCraft

This is a Linux sys admin journal by Vivek about sys admin work, Linux tips & tricks, hacks, news and more.

[0x1] Ubuntu Linux: Install RT2870 Chipset Based USB Wireless Adapter

[0x2] Open Source Photography Software

[0x3] FAQ Update 10/Aug/2010

[0x4] Top 5 Open Source Linux Server Provisioning Software

[0x5] The Best Open Source Graphics And Design Software

[0x6] FAQ Updates – July/16/2010

[0x7] HowTo: Migrate / Move MySQL Database And Users To New Server

[0x8] List: Linux Compatible USB Wireless Adapter (WUSB)

[0x9] HowTo: Speed Up Linux Software Raid Building And Re-syncing

[0xA] The Story Behind The Largest Distributor Of The Linux Operating System

Room362.com RSS Feed

Blog

[0x1] Metasploit turns 10,000

[0x2] Jailbreak SSH horrors strike back

[0x3] AV Tracker

[0x4] resources for railgun development

[0x5] Intro to RailGun: WIN API for Meterpreter

[0x6] Set Wallpaper Meterpreter Script

[0x7] Get off my lawn! iPhone Geo Blocking

[0x8] AV bypass made stupid

[0x9] A very important link...

[0xA] 0Exploit Privilege Escalation

Voice&Data RSS Feed

Aggregate RSS Feed

[0x1] HP and VMware join forces for an integrated cloud system

[0x2] Media Monitors upgrade infrastructure

[0x3] Matrium Technologies Avalanche 3.50 release

[0x4] Extreme Networks XNV data centre virtualisation life cycle management

[0x5] Spirent wins Interop award

[0x6] VSS Monitoring vCapacity microburst measurement capability

[0x7] Matrium Technologies Landslide 8.5

[0x8] Matrium Technologies Spirent TestCenter 3.50

[0x9] Matrium Technologies Optimizer 2016 traffic capture device

[0xA] APC by Schneider Electric InRow OA and RDU cooling system

Latest MITRE News

The MITRE Corporation is a not–for–profit organization chartered to work in the public interest. As a national resource, we apply our expertise in systems engineering, information technology, operational concepts, and enterprise modernization to address our sponsors' critical needs.

[0x1] MITRE's San Diego Site Celebrates 30th Anniversary

[0x2] MITRE Opens Clarksburg Site in West Virginia

[0x3] MITRE Marks 50th Anniversary in Colorado Springs

[0x4] Dr. Agam Sinha Named Chairman of the Board of RTCA

[0x5] MITRE's James W. Moore Honored by IEEE

[0x6] INCOSE and MITRE Sign Agreement on Systems Engineering Certification

[0x7] MITRE's UAT Beacon Radio Receives 2010 R&D 100 Award

[0x8] MITRE Announces Key Leadership Changes

[0x9] IDG's Computerworld Names MITRE a "Best Place to Work in Information Technology" for Sixth Year in a Row

[0xA] MITRE President and CEO Appointed to Howard University's Board of Visitors

SearchSecurity: Security Wire Daily News

The latest information security news on IT threats, vulnerabilities and market trends from the award-winning SearchSecurity.com.

[0x1] Microsoft to address DLL load hijacking flaw, issues new tool

[0x2] Researchers, ISPs fail to contain notorious Pushdo botnet

[0x3] CA to acquire Arcot Systems for SaaS identity management

[0x4] Security information sharing is a shared responsibility

[0x5] Intel-McAfee marriage could fuel renewed chip security interest

[0x6] Adobe fixes bevy of critical Shockwave Player vulnerabilities

[0x7] CEO must prioritize software development improvements, secure coding

[0x8] LANDesk Software acquired by private equity firm

[0x9] McAfee acquisitions: What could Intel get?

[0xA] Intel to acquire McAfee in $7.7 billion deal

leetupload.com

NewsFeed for leetupload.com

[0x1] New Tutorial - How the Microprocessor Works

[0x2] Famous - Copper Heatsink/Wine Chiller Idea on engadget and Hack a Day!

[0x3] Copper Heatsink on the Rocks Mod Finished

[0x4] Another Tutorial - Technical Practical Jokes

[0x5] New Tutorial - Campus WarWalking

[0x6] IRC Up For Use, and IRC Java Client is Here to Stay!

[0x7] VIRII AND EXPLOIT DATABASE IS UP!

[0x8] Updates

[0x9] Mineral Oil PC, Woot!

[0xA] Signing up for the Virii DB = Great Success, Very Nice!

Government Technology

[0x1] Government Technology - January 2009

[0x2] Government Technology - December 2008

[0x3] Government Technology - December 2008

[0x4] Government Technology - November 2008

[0x5] Government Technology - November 2008

[0x6] Government Technology - October 2008

[0x7] Government Technology - October 2008

[0x8] Government Technology - September 2008

[0x9] Government Technology - September 2008

[0xA] Government Technology - August 2008

WEB-HACK.ru

Новостной портал по сетевой безопасности!

[0x1] Data Guardian v1.5.9

[0x2] Топ-20 тем спама о Дне Святого Валентина

[0x3] Хакеры атакуют сторонников Барака Обамы

[0x4] Взлом сайта Общественной палаты

[0x5] ESET обновлила антивирус для смартфонов

[0x6] Kaspersky Security Bulletin. Развитие угроз в 2008 году

[0x7] Kaspersky Security Bulletin. Основная статистика за 2008 г.

[0x8] Kaspersky Security Bulletin. Спам в 2008 г.

[0x9] Хакеры получили доступ к данным 4,5 млн. человек на Monster.co.uk

[0xA] TechNet Magazine Февраль 2009

Sunbelt Blog

A blog about activities, products and ideas at Sunbelt Software, one of the leading developers of security software to protect against spyware, spam and other threats.

[0x1] So, how did they “credit my favor” with $4.5 M if they didn’t know my name?

[0x2] Clearwater backhoe incident: 09/02

[0x3] Zombie game inspires scammers to target your brains

[0x4] Safe Web Surfing Rule # 1: READ the URL

[0x5] U.S. Labor Day: phishers won’t be on holiday

[0x6] Faulty Fiverrs

[0x7] GFI/Sunbelt Labs quarterly briefing is on Web

[0x8] The Master of all you Survey

[0x9] Microsoft releases work-around tool for DLL loading vulnerability

[0xA] Human factors: drunken employee blasts server with .45 handgun

Twitter / amrittsering

Twitter updates from Amrit Williams / amrittsering.

[0x1] amrittsering: BP leak, rig explosion and then a tanker runs aground in Canada, its like that scene from the Jerk at global scale

[0x2] amrittsering: RT @kanendosei: Why It's Better To Pretend You Don't Know Anything About Computers - The Oatmeal http://j.mp/4JgHh0 -- yes, it is that f ...

[0x3] amrittsering: rt @TiffanyWinman My blog: Interview with BigFix CTO (@amrittsering) on the IBM acquisition: http://ow.ly/2xI82 #security #ibmtivoli #fb #in

[0x4] amrittsering: Quick interview/podcast with Virtual Strategy Magazine http://tinyurl.com/2axpqqt

[0x5] amrittsering: rt .@bradarkin @amrittsering is big blue allowing BTP to go on? <--Appears so, do you think they should? =)

[0x6] amrittsering: If you say Schipol International Airport 5 times fast you end up describing Charles De Gaulle - coincidence? I think not...

[0x7] amrittsering: @tqbf If that dog was dyed black & wearing a pseudo goth Hacker Cooks do it w/ foie gras & pork belly sandwiches I would believe that was u

[0x8] amrittsering: rt @Sonuva problem isolated to 2nd pair of RAM sticks. WTF is with RAM lately? <-- RAM is manufactured in facilities known to process eggs

[0x9] amrittsering: Beyond the Perimeter Podcast Episode #96 w/@alexhutton talking about the 2010 @verizonbusiness DBIR report http://tinyurl.com/24kbf2x

[0xA] amrittsering: rt @WeldPond CSC press release is cyber elite! <-- not every co. can toss around "Elite Global StrikeForce team" without a chorus of ROFLMAO

msnbc.com: Security

Msnbc.com is a leader in breaking news and original journalism.

[0x1] Google settles Buzz privacy lawsuit

[0x2] UN official: BlackBerry data requests legitimate

[0x3] BofA online banking down for 4 hours

[0x4] 2008 military PC attack 'most significant breach ever'

[0x5] Man charged in Facebook stalking case

[0x6] 'Porn mode' browsing not really that private

[0x7] State AGs: Craigslist should drop adult services

[0x8] iTunes users are the app's big security flaw

[0x9] Some iTunes Store accounts hacked, charges made

[0xA] Sponsored By:

Twitter / TrendMicro

Twitter updates from TrendMicro / TrendMicro.

[0x1] TrendMicro: RT @TrendLabs Taking down botnets is a good thing. Pushdo Takedown Damages #botnet http://blog.trendmicro.com/27904 #pushdo

[0x2] TrendMicro: RT @TrendLabs iTunes 10 also addresses security vulnerabilities. Update now http://bit.ly/dbnSsF

[0x3] TrendMicro: RT @TrendLabs: Our researchers detect #TDSS variant known to run in 64-bit systems as TROJ_TDSS.KAX. http://goo.gl/MpbE

[0x4] TrendMicro: Thanks to efforts of several security researchers RT @TrendLabs: Pushdo Takedown Damages Botnet http://blog.trendmicro.com/27904

[0x5] TrendMicro: RT @TrendLabs IQ Test Spam Proliferating via IMs. Tricks users to leave mobile number to see results http://blog.trendmicro.com/27845

[0x6] TrendMicro: Spammed instant msgs via Yahoo!Messenger RT @TrendLabs “IQ Test” Spam Proliferating via Instant Messages http://blog.trendmicro.com/27845

[0x7] TrendMicro: Watch out RT @TrendLabs New Zero-Day Vulnerabilities will be revealed this Sept by independent analysts http://blog.trendmicro.com/27833

[0x8] TrendMicro: Beware this nasty malware RT @TrendLabs: Trojan pretending to be @TweetDeck update - http://blog.trendmicro.com/27854

[0x9] TrendMicro: New from our researchers RT @TrendLabs: Trojan pretending to be @TweetDeck update - http://blog.trendmicro.com/27854 #security

[0xA] TrendMicro: Including Adobe, Apple, Microsoft, Mozilla products RT @TrendLabs New Zero-Day Vulnerabilities Imminent http://blog.trendmicro.com/27833

OSF Data Loss - Latest Incidents

This feed contains the latest incidents approved for inclusion in OSF Data Loss.

[0x1] 4,000 employee names, addresses, dates of birth, Social Security numbers and salaries sent via inadvertent e-mail

[0x2] 600 patients' data stolen with laptop

[0x3] 8,300 Names, Social Security numbers and some Florida driver’s license numbers stolen from laptop in rental car

[0x4] 300 credit card numbers stolen via virus from restaraunt

[0x5] State consultant posts dates of birth and Social Security numbers of 22,000 on website

[0x6] Name, Date of Birth and contact details of students lost on hacked server

[0x7] 150,000 names, addresses, genders, email addresses and customer profiles posted on the Internet by external service provider

[0x8] 200 patients information exposed due to former employee's password used to access medical records

[0x9] 492 patients records consent form signatures falsified

[0xA] Patient names, addresses, phone numbers, date of birth, Social Security numbers and reason for the visit stolen from three desktops, one laptop and a backup drive from office

Threat Level

Privacy, Crime and Security Online

[0x1] ‘Evil’ Eric Schmidt Debuts in Video Targeting Google Privacy

[0x2] Murdoch Reporters’ Phone-Hacking Was Endemic, Victimized Hundreds

[0x3] Police Kill Hostage Taker Who Besieged Discovery Channel

[0x4] Attorney: Army Disabled Manning’s Weapon Prior to Leaks

[0x5] Pirate Bay Documentary in the Works

[0x6] Obama’s Commerce Secretary Talks Tough on Music Piracy

[0x7] Dead Codebreaker Was Linked to NSA Intercept Case

[0x8] Alleged WikiLeaks Leaker Hires Civilian Defense Attorney

[0x9] Second Newspaper Chain Joins Copyright Trolling Operation

[0xA] Alleged Carder ‘BadB’ Charged in $9 Million ATM Heist

SANS Internet Storm Center, InfoCON: green

[0x1] Apple Releases Two Security Updates (One for OSX, One for iTunes) : http://support.apple.com/kb/HT4312 and http://support.apple.com/kb/HT4328, (Fri, Sep 3rd)

[0x2] Microsoft EMETv2 released, (Thu, Sep 2nd)

[0x3] SDF, please!, (Thu, Sep 2nd)

[0x4] Month of Undisclosed 0-day Bugs, (Wed, Sep 1st)

[0x5] Microsoft issues updates to sysinternals ProcDump and Process Monitor: http://blogs.technet.com/b/sysinternals/archive/2010/08/30/updates-procdump-process-monitor-and-a-new-mark-s-blog-post.aspx, (Wed, Sep 1st)

[0x6] VMWARE releases 2 security advisories for ESX Service Console: http://lists.vmware.com/pipermail/security-announce/2010/000103.html and http://lists.vmware.com/pipermail/security-announce/2010/000104.html, (Wed, Sep 1st)

[0x7] Interesting PHP injection, (Tue, Aug 31st)

[0x8] Abandoned free email accounts, (Sun, Aug 29th)

[0x9] Apple QuickTime potential vulnerability/backdoor, (Mon, Aug 30th)

[0xA] New poll on mobile device security http://isc.sans.edu/poll.html, (Mon, Aug 30th)

My Security Blog

Security Chronicles By Umesh Thota.
www.SecureBlog.net

[0x1] iPhoned..

[0x2] this is why.. lol…

[0x3] Panda Cloud Antivirus !!!

[0x4] BEST BROWSER (*FIREFOX) ADDONS!!!

[0x5] BORG!!! BOT!!! FIGHT!!!

[0x6] GUIDELINES FOR SAFE COMPUTING:

[0x7] K9 Web Protection - Free Internet Filtering and Parental Controls Software

[0x8] I’M BACK

[0x9] Must Have Security Solutions (for free)

[0xA] Goolag Scanner Released!

CSO Blogs - Data Protection

[0x1] The Amazing Morphing Contract

[0x2] The Rationality Of Re-Using Passwords

[0x3] Cyber Security Roundtable: Security In The Cyber World

[0x4] Griftslist

[0x5] Putting RIM’s “Security” Challenges In Perspective

[0x6] The Forrester Information Security Maturity Model

[0x7] What The Citi iPhone Security Flaw Says About Mobile Security

[0x8] New Forrester Wave Evaluation: Vulnerability Management Products

[0x9] Wrapping up in Zurich

[0xA] AQAP - A Brief Overview of 'Inspire'

News from trapkit.de

News from trapkit.de

[0x1] [16.07.2010] Oracle Solaris Kernel Security Advisory

[0x2] [22.02.2010] avast! Security Advisory

[0x3] [02.02.2010] Apple iPhone OS and Mac OS X Security Advisory

[0x4] [31.01.2010] Oracle Solaris Kernel Security Advisory

[0x5] [27.12.2009] New version of checksec.sh

[0x6] [09.09.2009] Apple iPhone OS AudioCodecs Heap Buffer Overflow (TKADV2009-007)

[0x7] [16.05.2009] libsndfile/Winamp Security Advisory (TKADV2009-006)

[0x8] [04.04.2009] xine-lib Security Advisory (TKADV2009-005)

[0x9] [15.02.2009] xine-lib also affected by TKADV2009-004

[0xA] [28.01.2009] FFmpeg Security Advisory (TKADV2009-004)

Famous Pete Wood Security

My friends tease me about my role in promoting First Base Technologies through public speaking, articles and interviews ... hence calling me 'Famous Pete Wood Security'

[0x1] Vote for us!

[0x2] Personal mobile devices

[0x3] May 2010 ramblings

[0x4] Hot topics for 2010 - discuss!

[0x5] A Happy New Year for data protection?

[0x6] BCS ELITE annual dinner

[0x7] ISACA European ISRM Conference

[0x8] Facebook bugs galore

[0x9] Global crime networks

[0xA] Skype hack (at last?)

CSOONLINE.com - Federated Identity

[0x1] SaaS, Security and the Cloud: It's All About the Contract

[0x2] Social Networking a Tool for More Secure Identity Management? No Joke!

[0x3] News Flash: Data Debauchery That Happens in Vegas Doesn't Stay There

[0x4] Why Security Pros Hate Microsoft SharePoint (and What to Do About It)

[0x5] Federated ID: An Idea Whose Time Never Came?

[0x6] Identity Management: Implementation Dos and Dont's

[0x7] Identity Management: Critical Components

[0x8] An Introduction to Identity Management

[0x9] Strong Authentication for Online Banking: Success Factors

[0xA] Thinking of Doing Federated Identity Management?

SOURCE Conference Blog

SOURCE Boston 2009: March 11th-13th

[0x1] I can haz beautifool spam

[0x2] Des malwares qui font tomber les avions…

[0x3] Video games help U.S. economy

[0x4] Equilibrium Networks free/open-source software release

[0x5] Blackberry : RIM a-t-il ouvert la boîte de Pandore ?

[0x6] ARP cache poisoning by dummies…

[0x7] Log Visualization in the Cloud – Webinar

[0x8] SOURCE Barcelona

[0x9] Livraison record (encore) !

[0xA] HADOPI, ou l’échec du paysage culturel numérique français…

Aladdin Knowledge Systems Latest HASP Press Releases

Aladdin Knowledge Systems Latest HASP Press Releases - RSS Feed

[0x1] China's Largest CAD/CAM Software Developer Selects Aladdin HASP SRM

[0x2] HASP SRM v 3.60 Provides Automatic File Wrapping for Windows x64 Applications

[0x3] Leading Network Engineering Firm in China Selects Aladdin HASP SRM to Stop Software Piracy

[0x4] Aladdin Announces Enhanced HASP SRM Anti-Piracy Tool for Mac Software Developers

[0x5] Aladdin HASP SRM Adds Automatic File Wrapping to Secure Intellectual Property in Java-Based Applications

[0x6] Aladdin HASP SRM Adds Linux Support

[0x7] Iris Biometrics Leader Secures Software with Aladdin HASP SRM

[0x8] Aladdin HASP SRM Wins Codie Award for Best Digital Rights Management Solution

[0x9] Aladdin Announces First Runtime Installer Certified for Windows Vista

[0xA] Aladdin HASP SRM Receives CompTIA SoftwareCEO Innovation Award

Techrights

Free Software Sentry – watching and reporting maneuvers of those threatened by software freedom

[0x1] On Matters of Patents, Google Less of a Problem Than Microsoft, Apple

[0x2] ‘Inside Google’ is an AstroTurfing/Lobbying Site, Not a Real Blog

[0x3] IRC Proceedings: September 3th, 2010

[0x4] No, Virginia! APIs, Visual Studio, and Apple Are Not Open Source

[0x5] Microsoft Crashes Rival’s Event (OpenOffice.org Conference) Using Moritz Berger

[0x6] Links 3/9/2010: Wine 1.3.2, Great Fedora Site Redesign

[0x7] Divide and Conquer: How Microsoft Fractures Free and Open Source Software, GNU/Linux

[0x8] GNU/Linux Users in Techrights

[0x9] “Only Idiots Want to Pay for Novell” (Corrected)

[0xA] GNU/Linux Keeps Gaining Market, Microsoft-Funded Net Applications Keeps Lying

Codenomicon News - RSS Feed

Codenomicon News - RSS Feed

[0x1] September 2010 Codenomicon Newsletter

[0x2] Codenomicon Crash Test Party Participants Help To Fix OpenLDAP

[0x3] Codenomicon Webcast on Zero Day Vulnerability Management is Available for Download

[0x4] June 2010 Codenomicon Newsletter

[0x5] Codenomicon Automates Penetration Testing

[0x6] Codenomicon Launches Network Time Machine

[0x7] Codenomicon releases a whitepaper on browser fuzzing

[0x8] Open vacancies

[0x9] MSF Introduces Robustness Testing at LTE IOT event

[0xA] Microsoft selects Codenomicon to join the SDL Pro Network

CAcert NEWS Blog

CAcert NEWS and up coming events.

[0x1] CAcert Assurer Training Event am 04. Oktober 2010 in Aachen

[0x2] CAcert auf der FrOSCon 2010 (Sa 21. + So 22. Aug)

[0x3] Community Update July 2010

[0x4] root certificates under free license, RDL

[0x5] PING e.V. Sommerfest, 7.8.2010, Dortmund

[0x6] One Milestone in Software-Assessment-Project reached

[0x7] New Password Recovery w/ Assurance Procedure

[0x8] SP to DRAFT — marks the milestone in Policy!

[0x9] scheduled systems downtime - 15th June

[0xA] Community 2010 March Update

MySecured.com

Covering Mobile Phone Forensics, Information Security and Computer Security

[0x1] Push for cigarette-like warnings on mobiles in the USA

[0x2] Blackbox JTAG Reverse Engineering @ 26th Chaos Communication Congress

[0x3] Happy Holidays from MySecured.com

[0x4] Sexting and Mobile Phone Forensics

[0x5] NIST Releases a New Report within Mobile Forensic Reference Materials: A Methodology and Reification. NISTIR 7617.

[0x6] New NIST SIM Data Population Tool For Mobile Phone Forensics Uses

[0x7] Augmented Reality Projection Tracking System from Japan

[0x8] Android 2.0 Perview Video (On G1 from SDK)

[0x9] Wearable, Projector and Mobile Phone based Sixth Sense

[0xA] Real-Time Interactive Augmented Reality Billboard

Black Hat Forum Black Hat SEO

BlackHatWorld is a backhat SEO Forum dedicated to learning black hat seo, cloaking, doorway pages, blogging, automatic content generators and more. Master the ART of "BlackHat"!

[0x1] manual review after $20/day?

[0x2] Keywords and Sub-url or Main url?

[0x3] Craigslist JV. You post

[0x4] How Do You Drive Traffic with YouTube?

[0x5] captcha bypass?

[0x6] Should i keep a running list of scrapebox auto-approve sites?

[0x7] Texas opens inquiry into Google search rankings

[0x8] Paypal Merchant Account

[0x9] free $75 ad voucher

[0xA] Do freelancers freelance?

OStatic blogs

[0x1] What's Next for Google Wave

[0x2] More Evidence That Linux Doesn't Necessarily Need the Desktop

[0x3] Software Bounties Work For Google, And Can Work Throughout the FLOSS Arena

[0x4] Adopting Enterprise Open Source Software

[0x5] SCALE 9X Announces Call for Papers

[0x6] OXUploader Makes Quick Work of Migrating Data to Open-Xchange Server

[0x7] How To Master GIMP, For Graphics, Quickly And Easily

[0x8] Is Open Source Software Competitive With Cutting-Edge Applications?

[0x9] Apple's Relationship to Open Source

[0xA] Flash On Android: Surprisingly Bad

Security Labs

[0x1] What are the top threats to Cloud Computing?

[0x2] Phoenix Exploit Kit's Random Access Obfuscation

[0x3] Apple QuickTime "_MARSHALED_PUNK" 0-day

[0x4] Web Spam leading to Friendster on the rise

[0x5] This Month in the Threat Webscape - July 2010

[0x6] Technical Analysis on iPhone Jailbreaking

[0x7] You have Rogue Mail!

[0x8] Media Temple injections lead to Phoenix Exploit Kit

[0x9] 2010 Tax-Themed Malicious Emails

[0xA] JailbreakMe, drive-by attacks on iOS, and limiting potential attacks

DarkReading - All Stories

DarkReading

[0x1] Tech Insight: Retooling Vulnerability Scanning, Penetration Testing for IPv6

[0x2] Five Ways to Stop Mass SQL Injection Attacks

[0x3] IPv6 Transition Poses New Security Threats

[0x4] Networked Scanners Offer A Window Into The Enterprise, Researcher Says

[0x5] U.S. Businesses Could Lose Up To $1 Billion In Online Banking Fraud This Year

[0x6] Product Watch: Verizon, VMware Team Up With Hybrid Cloud Service

[0x7] Could USB Flash Drives Be Your Enterprise's Weakest Link?

[0x8] Delaware Contractor Mistakenly Posts Personal Data Of 22,000 Employees

[0x9] IBM Corrects Unpatched Vulnerability Numbers After Google Challenge

[0xA] Major Disruption of Pushdo Botnet Wasn't The Original Goal

DVLabs: Blogs

Recent Blog Posts

[0x1] Security Advisory for NetWare 6.5 OpenSSH

[0x2] ZDI Disclosure Policy Changes

[0x3] ZDI 2010 Milestone

[0x4] MOBOTS: WeatherFist Exposed

[0x5] RSA Conference 2010 Talks

[0x6] Pwn2Own 2010

[0x7] Mostrame la Guita!

[0x8] Ekoparty Wrap Up

[0x9] IPS Testing Realities

[0xA] Ekoparty 2009

Kioptrix

Learning Security together

[0x1] RIM Stands Firm in Face of Governments’ Demands for Monitoring Capabilities

[0x2] Apple Will Fix iPhone PDF Flaw

[0x3] Cracking The Perimeter

[0x4] HSIYF For Charity

[0x5] “Metasplizing” – Convert an existing exploit to MSF Module

[0x6] Been awhile hasn’t it…

[0x7] HackUS 1st Edition… Complete Success!

[0x8] Ettercap command line basics

[0x9] News and updates…

[0xA] Hackus.org CTF soon upon us

Microsoft news from Network World

Breaking Microsoft news and analysis from NetworkWorld.com

[0x1] VMware customers cast a wary glance at Microsoft's virtualization tools

[0x2] Microsoft finalizes Windows Phone 7 code for fall release

[0x3] Microsoft to VMware: Windows is still relevant in the virtualization era

[0x4] VMworld 2010: Virtualization, The Matrix, and the VMware/Microsoft rivalry

[0x5] IBM X-Force backs-off Google as major patch offender

[0x6] VMware aims to displace Windows with cloud-based desktop apps

[0x7] VMware's ex-Microsoft exec Paul Maritz says Windows no longer center of innovation

[0x8] Microsoft flaunts customer dumping VMware

[0x9] Report: Sun, Microsoft and Mozilla leave the most vulnerabilities unpatched

[0xA] Windows and Linux servers grow at Unix's expense

LinuxSecurity.com: Debian Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Review: The Official Ubuntu Book

[0x3] Debian: 2102-1: barnowl: unchecked return value

[0x4] Debian: 2101-1: wireshark: Multiple vulnerabilities

[0x5] Debian: 2100-1: openssl: double free

[0x6] Debian: : openoffice.org: buffer overflows

[0x7] Debian: 2098-1: typo3-src: Multiple vulnerabilities

[0x8] Debian: 2097-1: phpmyadmin: insufficient input sanitisi

[0x9] Debian: 2096-1: zope-ldapuserfolder: missing input validation

[0xA] Debian: 2095-1: lvm2: insecure communication prot

Network Security Blog

Join me as I spend 30 minutes each week talking about the computer security issues facing us today. I discuss privacy, hacking, malware and the Payment Card Industry (PCI) Data Security Standards.

[0x1] Network Security Podcast, Episode 210

[0x2] Defcon 2010 Interview: Joe Grand

[0x3] Certified Application Security Specialist in job description

[0x4] May see you at HacKid

[0x5] Network Security Podcast, Episode 209

[0x6] Black Hat 2010: Branden Williams, RSA

[0x7] How would I write a framework to replace PCI?

[0x8] Review of PCI-DSS 2.0

[0x9] PCI 2.0 Summary of Changes

[0xA] Network Security Podcast, Episode 208

Security Fix

Brian Krebs on computer and Internet security

[0x1] Farewell 2009, and The Washington Post

[0x2] Hackers exploit Adobe Reader flaw via comic strip syndicate

[0x3] Twitter.com hijacked by 'Iranian cyber army'

[0x4] Group IDs hotbeds of Conficker worm outbreaks

[0x5] Hackers target unpatched Adobe Reader, Acrobat flaw

[0x6] Check your Facebook 'privacy' settings now

[0x7] Paper-based data breaches on the rise

[0x8] Critical updates for Adobe Flash, Microsoft Windows

[0x9] Featured Advertiser

[0xA] Security Fix author named 'cybercrime hero'

Security Watch

[0x1] COLLAGE, Exchanging Messages Through Hidden Channels

[0x2] Materials, DEFCON 18

[0x3] Materials, Blackhat US 2010

[0x4] Reports, Barracuda 2010 Midyear Security Report

[0x5] Reports, Cyveillance AV detection rate

[0x6] Reports, Cenzic midyear 2010

[0x7] Reports, Cisco Midyear 2010

[0x8] Reports, BitDefender H1 2010

[0x9] Materials, HITB Europe 2010

[0xA] Spy Software on Mobile Phones

ha.ckers.org web application security lab

Web Application Security Blog

[0x1] The Perils of Speeding up the Browser

[0x2] Browser Differences, Minutia Et Al…

[0x3] Throttling Traffic Using CSS + Chunked Encoding

[0x4] Pyloris and Metering Traffic

[0x5] XSHM Mark 2

[0x6] Cookie Clobbering

[0x7] MITM, SSL and Session Fixation

[0x8] Issues with Perspectives

[0x9] Prior Knowledge Of User’s Cert Warning Behavior

[0xA] IE Cookies

pentestmonkey.net

Latest ramblings of the monkey...

[0x1] New Web Application Scanner: Netsparker

[0x2] Cross-Site Request Forgery For POST Requests With An XML Body

[0x3] exploit-suggester Update: v0.3

[0x4] YaptestFE Update: v1.1

[0x5] Yaptest Update: v0.2.1

[0x6] unix-privesc-check Update: v1.4

[0x7] Informix SQL Injection Cheat Sheet

[0x8] unix-privesc-check Update: v1.3

[0x9] exploit-suggester Update: v0.2

[0xA] Preventing Web-based Directory Enumeration Attacks Against IIS

ThinkGeek :: What's New

Stuff for Smart Masses - Product Announcements

[0x1] Geek Kids : Aba-Conundrums Kids Abacus Puzzle

[0x2] Geek Kids : Hello Kitty Monopoly

[0x3] Geek Kids : Darth Vader Robotic Arm

[0x4] T-Shirts & Apparel : Maze of the Subconscious

[0x5] T-Shirts & Apparel : Resistor Jewelry Set

[0x6] T-Shirts & Apparel : Here Be Dragon

[0x7] T-Shirts & Apparel : FML

[0x8] T-Shirts & Apparel : Canned Unicorn Meat Babydoll

[0x9] T-Shirts & Apparel : Canned Unicorn Meat Shirt

[0xA] T-Shirts & Apparel : Bazinga! Hoodie

AirSafe.com Web Site

Site dedicated to providing the public with information on aviation safety and security.

[0x1] AirSafe.com News

[0x2] Podcast on Intial Details of Air France A330 Crash near Brazil

[0x3] Air France Flight 447 Accident Information

[0x4] Crash of Turkish Airlines 737 in Amsterdam

[0x5] Continental Connection Crash in Buffalo 12 February 2009

[0x6] A320 Crashes in the Hudson River

[0x7] Year in Review 2008

[0x8] Risks from Incapacitated Pilots and Pilots Who May Deliberately Crash Airplanes

[0x9] Interview on 'The Gregg Knapp Experience' - 18 November 2008

[0xA] Complacency and the Qantas A330 Accident of 7 October 2008

ITWeb News Feed

Latest ICT news

[0x1] Kaspersky reveals six newcomers

[0x2] DCC extends Dell partnership

[0x3] Nokia waters its green strategy

[0x4] Social networking transforms data warehousing

[0x5] Miscommunication damages projects

[0x6] The data warehouse equals profit base

[0x7] Panda, Against Intuition fight cyber crime

[0x8] Building a Web 2.0 enterprise

[0x9] iBurst looks to newly licensed

[0xA] More fuss over Nyanda's cars

FaceTime Communications - Press Releases

Press releases from FaceTime.

[0x1] FaceTime Launches Socialite SaaS Solution to Secure Social Networks

[0x2] Top Requirements for FSA Organisations using Social Media

[0x3] Schur Securely Enables Web 2.0 and Facebook Usage with FaceTime

[0x4] FaceTime Launches Security and Compliance Controls for Facebook, LinkedIn and Twitter

[0x5] Media Advisory: FaceTime Offers Strategies to Secure Against Spreading NewPhoto IM Worm

[0x6] FaceTime Wins Best Security Solution for Financial Services

[0x7] FaceTime Raises Security, Management, Compliance Standard for Unified Communications with Vantage Software Launch

[0x8] FaceTime Survey Reveals 38% of IT Managers Ignoring Web 2.0 Risks

[0x9] FaceTime IMAuditor, Finalist for Best Security Solution for Financial Services

[0xA] IBM Software Services for Lotus to Resell FaceTime Communications Security and Compliance Solutions

Security Watch

Security Watch is a resource center for everything related to tech security: the latest news, review summaries and advice on security-related topics. We show you how you can protect your online identity and keep your computer safe.

[0x1] Apple Forgot to Filter Spam On New Ping Service

[0x2] Are You Happy With Your Antivirus?

[0x3] iTunes 10 Adds TV Rentals, Security Fixes

[0x4] Snoop Dogg Says "Hack is Wack!"

[0x5] Microsoft Updates DLL Advisory, Adds "Fix It" Tool

[0x6] The Most Dangerous Places to Surf

[0x7] HP Scanners With Webscan Expose Documents

[0x8] Image Backup—The Best Anti-Malware Protection There Is

[0x9] Facebook Clickjacking Attack Strikes Home

[0xA] Ten Fallacies About Web Privacy

EduGeek.net

EduGeek.net - The educational I.T. professionals' life line

[0x1] Helpdesk Software Advice

[0x2] Exporting data from RM Integris

[0x3] SPAM Filtering

[0x4] Free Data Recovery Software

[0x5] [News] Fast Fix - says quite a bit about consultants [ failed techies ;) ]

[0x6] [For Sale] FLIP Video Ultra HD 8GB

[0x7] [Video] Brain Farm Cinema's Reel

[0x8] Tippex viral thing

[0x9] Irish Lottery

[0xA] Thin clients in a Server 2003 environment:

Zend Developer Zone (DevZone) - Advancing the art of PHP

advancing the art of PHP. Best practices, samples, articles, news, and community for PHP 4, PHP 5, and beyond.

[0x1] Zend Framework is a BOSSie Award Winner

[0x2] Extending Zend Form Element to create customized Phone number field

[0x3] DataModeler: Simple ORM - Part 1 Models

[0x4] Creating PDF Documents with Zend Framework

[0x5] Quick Start Symfony DI (Dependency Injection) Tutorial

[0x6] Zend Framework 1.10.8 Released

[0x7] NP-Gravatar

[0x8] Dev Derby! Delve Deep for Details

[0x9] Software development DSL

[0xA] TODAY, Tomorrow, and the Next Day -> ZF Bug Hunting Days!

The Web Application Security Consortium

The Web Application Security Consortium (WASC) is an international group of experts, industry practitioners, and organizational representatives who produce open source and widely agreed upon best-practice security standards for the World Wide Web.

[0x1] Romain Gaucher commented on Web Application Security Scanner List

[0x2] Brian Shura edited Web Application Security Scanner List

[0x3] Brian Shura edited Web Application Security Scanner List

[0x4] Brian Shura edited Web Application Security Scanner List

[0x5] Petko D. Petkov commented on Web Application Security Scanner List

[0x6] Ryan Barnett edited Distributed Open Proxy Honeypots

[0x7] Ryan Barnett edited Web-Hacking-Incident-Database

[0x8] Ryan Barnett uploaded

[0x9] Ryan Barnett edited Web-Hacking-Incident-Database

[0xA] Ryan Barnett edited Web-Hacking-Incident-Database

Twitter / i0n1c

Twitter updates from Stefan Esser / i0n1c.

[0x1] i0n1c: expiring unauthenticated sessions is one of the most stupid "protections"

[0x2] i0n1c: base/e-plus shop is telling me: "For security reasons we deleted all your data - TÜV Safer-Shopping" <- the TÜV way to be secure/delete all

[0x3] i0n1c: Is the Galaxy SI9000 any good?

[0x4] i0n1c: No one will ever know if the PS3 jailbreak was released because #sony killed the other os. But it is very likely. I love the spirit.

[0x5] i0n1c: @msuiche That @50cent guy should stop talking. He is such an annoying m.......

[0x6] i0n1c: Just woke up on a vacation day.

[0x7] i0n1c: sans.org discusses a "clever" PHP injection attack - how can an attack be clever when it was caught by mod_security.

[0x8] i0n1c: I wonder if F5 would sponsor me access to a BIGIP to test it for bypass vulnerabilities. I already have a bunch of that...

[0x9] i0n1c: F5 ASM is crap. It is far worse snake oil than mod_security.

[0xA] i0n1c: back home. tired.

Help Net Security - Vulnerabilities

Help Net Security is a daily updated security related site. We offer information on the latest happenings in the InfoSec world, advisories, viruses, papers, and more. HNS also has a large download section of security tools for Windows, Linux, Mac OS X and Pocket PC.

[0x1] In-Portal CMS

[0x2] PHPCMS2008 "download.php" Information Disclosure Issue

[0x3] Online Work Order Suite Lite Edition Multiple Cross-Site Scripting Vulnerabilities

[0x4] QEMU KVM Multiple Issues

[0x5] Serv-U Denial of Service and Security Bypass Vulnerabilities

[0x6] Linux Kernel KVM Intel VT-x Extension NULL Pointer Denial of Service

[0x7] Netpet CMS "confirm.php" Local File Include

[0x8] PHP City Portal "login.php" Multiple SQL Injection Issues

[0x9] ACCESSGUARDIAN Unspecified Cross-Site Scripting Issue

[0xA] Novell iPrint Client Multiple Security Vulnerabilities

CSOONLINE.com - Other

[0x1] How to do a hotel room security check

[0x2] Schneier: Eavesdropping on 'smart homes'

[0x3] "The biggest and worst deal in security history"

[0x4] Passwords in the wild: the future

[0x5] Website vulnerability analysis: fast, cheap, good - pick 2

[0x6] Riggins: FAIR and vulnerabilities

[0x7] Bejtlich: Dell needs a PSIRT

[0x8] Trojan pong and other visualizations

[0x9] PCI standards' 3-year lifecycle

[0xA] 3rd party web widget security FAQ

PandaLabs Blog

Everything you need to know about Internet threats

[0x1] We are good at finding names

[0x2] Chilean miners tragedy used to distribute malware

[0x3] Mariposa: the Slovenian story

[0x4] How to Get Hacked on Facebook

[0x5] Rogueware on the roll

[0x6] Facebook clickjackers target victims using McDonald’s as bait

[0x7] Blackhat SEO Attack Targeting Halloween and Thanksgiving

[0x8] Moshi Monster under attack

[0x9] Clickjacking Attack Targeting Shark Week

[0xA] Chelsea Clinton BlackHat SEO attack

Info Security News

Carries news items (generally from mainstream sources) that relate to security.

[0x1] Cross-subdomain Session Fixation

[0x2] Snoop Dogg joins cybercrime fight because 'hack is wack'

[0x3] Botnet takedown may yield valuable data

[0x4] Russian Trojan blamed for credit card losses at US diner

[0x5] Secunia Weekly Summary - Issue: 2010-35

[0x6] News of the World faces fresh phone hacking charge

[0x7] Russian government email servers hacked

[0x8] DARPA Soliciting Bids On Insider Threat Prevention

[0x9] Iran's Cyber Army Hacks 1, 000 US, British, French Gov't Websites

[0xA] Darpa’s Star Hacker Looks to WikiLeak-Pr oof Pentagon

Dana Epp's ramblings at the Sanctuary

Life, the Universe and everything Security

[0x1] Announcing Elevation of Privilege: The Threat Modeling Game

[0x2] Reflecting on our Windows 7 birthday party

[0x3] Time to party! Windows 7 is here!

[0x4] RunAs Radio podcasts you might want to listen to

[0x5] Coding Tip: Why you should always use well known SIDs over usernames for security groups

[0x6] Major Windows 7 gotcha you should know about that may block you from upgrading

[0x7] Microsoft SDL bans mempcy()... next it will be zeros!!!!

[0x8] Using TS RemoteApp as an attack vector

[0x9] Is Twittering safe?

[0xA] Come have Coffee and Code in Vancouver with me and Microsoft tomorrow

HacDC

HacDC's mission is to improve the world by creatively rethinking technology.

[0x1] DCist Post on the HacDC Spaceblimp

[0x2] Cooking for Geeks

[0x3] Coffee talk - Roasting and brewing coffee

[0x4] Volunteering in India - A story of desktop Linux

[0x5] Open Hack Night: Wednesday, Aug 25

[0x6] Spaceblimp2!

[0x7] Spaceblimp launch this morning

[0x8] Intro to Locksport & Beyond

[0x9] HacDC Spaceblimp Launch Planned for Saturday (Call 202-559-1100 To Follow Using Twilio)

[0xA] Inter-Hackerspace showing of GET LAMP: The Text Adventure Documentary, Sep. 11th

rAWjAW's Blog

Coding, Exploiting, Reverse Engineering

[0x1] Updates

[0x2] Second XSS and Milw0rm Submission

[0x3] Passed My C|EH

[0x4] Security Rant

[0x5] Contacted Back!

[0x6] First XSS Vulnerability Discovery!

[0x7] Jasager and Airbase-ng Defenses

[0x8] Passed the GPEN!

[0x9] MS08-067 in Metasploit

[0xA] GIAC Penetration Tester (GPEN)

PenTestIT

Your source for Information Security Related information!

[0x1] DotDotPwn: A Tool for Directory Traversal Checking and Scanning!

[0x2] UPDATE: Microsoft Enhanced Mitigation Evaluation Toolkit v2!

[0x3] UPDATE: ProcNetMonitor v2.7!

[0x4] UPDATE: Laudanum 0.2!

[0x5] Darik’s Boot and Nuke: An Anti Forensic Tool!

[0x6] Three Tools to Help You find DLL Hijacking Vulnerabilities!

[0x7] UPDATE: Wireshark 1.4.0 & Wireshark 1.4.0rc2!

[0x8] DllHijackAuditor: Audit the DLL Hijacking Vulnerability!

[0x9] UPDATE: Snorby Preconfigured Security Applications v1.5!

[0xA] UPDATE: Skipfish-1.62b!

TheAppleBlog

[0x1] TechUniversity Freebie: Publishing a Podcast

[0x2] Apple Previews iOS 4.2, Still Syncs Like iPhone OS 1.0

[0x3] Apple Doubles iPad Production, May Triple Soon

[0x4] iTunes 10 Interface: Where Apple Went Wrong

[0x5] Ping: A Social Network Inside a Walled Garden

[0x6] iPod touch Is Close, But Still No Contract-Free iPhone

[0x7] Quick Tip: Make iTunes 10 Window Controls Horizontal

[0x8] Caught in the Wake of Apple’s Press Events

[0x9] Why the New Apple TV Isn’t Something I’ll Be Watching

[0xA] Twitter App Updated for iPad

Foro de elhacker.net - Noticias

Información en vivo desde Foro de elhacker.net

[0x1] Facebook bloquea el acceso de Ping

[0x2] Internet prepara su gran asalto a la 'caja tonta'

[0x3] Facebook, en el punto de mira de Greenpeace por un centro de datos

[0x4] Facebook pone a prueba el 'seguimiento total' a los usuarios de la red social

[0x5] Dubái atribuye al espionaje la investigación a la Blackberry

[0x6] Windows 7 deja atrás en número de usuarios a Vista

[0x7] El navegador Google Chrome celebra su segundo aniversario con una actualización

[0x8] Samsung Galaxy Tab, ¿el competidor real del iPad?

[0x9] GameStop decide no vender MEDAL OF HONOR a militares

[0xA] IBM presenta el microprocesador más veloz del mundo

Skypher

The blog for absolutely nothing!

[0x1] Exploits, ASLR and randomness

[0x2] Fix for Windows batch script arguments handling “feature”

[0x3] Issue 17 – Msxml2.XMLHTTP.3.0 response handling memory corruption

[0x4] JsSfx – JavaScript compression/obfuscation

[0x5] Ultra-Edit buffer overflow in GNU Aspell

[0x6] Video Playback on Android 2

[0x7] PHP Strings ‘ vs “

[0x8] MSIE 6,7, 8 & 9 insertAdjacentElement NULL ptr

[0x9] Apple QuickTime memory corruption when loading BMP file

[0xA] MSIE 8,9 (X)HTML stack exhaustion

Wired: Politics

The intersection of technology and government.

[0x1] Murdoch Reporters' Phone Hacking Was Endemic, Victimized Hundreds

[0x2] Evil Eric Schmidt Debuts in Video Targeting Google Privacy

[0x3] Vets Get Ecstasy to Treat Post-Traumatic Stress

[0x4] Attorney: Army Disabled Manning's Weapon Prior to Leaks

[0x5] Pakistan Flood-Relief Efforts Stuck at 1.0

[0x6] Hostage-Taker Besieges Discovery Channel, Posts Demands on Web

[0x7] Pirate Bay Documentary in the Works

[0x8] Obama's Commerce Secretary Talks Tough on Music Piracy

[0x9] Darpa's Star Hacker Hopes to WikiLeak-Proof Pentagon

[0xA] China's Secret Satellite Rendezvous 'Suggestive of a Military Program'

Deb Shinder's Blog

Deb Shinder is MS SECURITY. An Enterprise Security MVP, she has the “inside story” on all topics related to securing Microsoft networks, from the server all the way down to the network-connected smart phone. Her blog will address Microsoft’s security products and technologies including those built into the operating system (access controls and permissions, EFS, BitLocker, etc.), network security technologies (Active Directory, IPsec, DirectAccess, etc.) and separate security products (ISA Server/TMG, IAG, ILM and the Forefront family of client and server security products and services). This blog focuses on how network administrators and network security specialists can create a multi-layered security strategy, develop sound security policies, and build a strong line of defense around the network to prevent both internal and external attack.

[0x1] FCC solicits comments on cybersecurity

[0x2] Tool released to address DLL preloading remote attack vector

[0x3] Security researcher says newly discovered bug makes .LNK vulnerability look “almost pointless”

[0x4] Intel moving into the software security business with McAfee purchase?

[0x5] Rethinking the security implications of virtualization

[0x6] Free biometric logon software for Windows

[0x7] Another mobile security threat

[0x8] Fake certificates open the door to attackers

[0x9] A day at the Opera could put your network at risk

[0xA] iPhones and iPads targeted by malware writers

Securityvulns news channel

securityvulns.com vulnerabilities newsline

[0x1] libHX library buffer overflow

[0x2] OpenSSL library double free vulnerability

[0x3] libwww-perl directory traversal

[0x4] Microsoft Windows multiple applications DLL hijacking, updated since 26.08.2010

[0x5] Apple WebKit / Safari DoS

[0x6] bogofilter DoS

[0x7] libgdiplus / Mono multiple integer overflows

[0x8] Apple QuickTime code execution

[0x9] Web applications security vulnerabilities summary (PHP, ASP, JSP, CGI, Perl)

[0xA] Wireshark sniffer multiple security vulnerabilities, updated since 14.06.2010

Securelist / Blog

[0x1] The Winlock numbers, the Winlock laws

[0x2] Understanding Current Trends in the Fake Anti-Virus/Scareware Ecosystem

[0x3] The Winlock case - I'm taking bets!

[0x4] Twitter goes OAuth-only (Yay for security!)

[0x5] Gumblagra and a piano

[0x6] Who needs my SQL server?

[0x7] New IM Worm Squirming in Latin America

[0x8] Whitelisting - how it protects us

[0x9] Oops they did it again!

[0xA] First SMS Trojan for Android

Data Management White Papers

Business Intelligence, Database, Data Warehouse, Knowledge Management, and Oracle White Papers

[0x1] Insiders' Guide to Evaluating Remote Control Software

[0x2] Automated Sales Order Processing for Order-to-Cash Performance with SAP(R) Solutions

[0x3] Closing the Order to Cash Performance Gap: Between Document Processes and SAP(R) Solutions

[0x4] Order-to-Cash Best Practices for Billing Documents - Automated Access and Delivery

[0x5] Automating Complete PO Document Packages for Procure-to-Pay Performance with SAP(R) Solutions

[0x6] The Learning Organization Goes Digital

[0x7] 10 Tips - IT Training Support

[0x8] How to Make Your IT Staff Smarter

[0x9] Improving Application Development with Digital Libraries

[0xA] Working Green with Digital Libraries - How it Can Help

Cisco Security Responses

Cisco Security Responses (the 40 most recent responses)

[0x1] Cisco Unified MeetingPlace XSS Vulnerability

[0x2] Cisco Unified MeetingPlace XSS Vulnerability (November 2007)

[0x3] Cisco IronPort Desktop Flag Plug-in for Outlook Information Disclosure

[0x4] Rootkits on Cisco IOS Devices

[0x5] Unmatched Request Discloses Client Internal IP Address

[0x6] Cisco Response to Outpost24 TCP State Table Manipulation Denial of Service Vulnerabilities

[0x7] Cisco IOS Cross-Site Scripting Vulnerabilities

[0x8] Cisco IP Phone 7940/7960 SIP INVITE Denial of Service

[0x9] Cisco Unified MeetingPlace Stored Cross-Site Scripting Vulnerability

[0xA] MD5 Hashes May Allow for Certificate Spoofing

Twitter / mdowd

Twitter updates from mdowd / mdowd.

[0x1] mdowd: Chris Evans has joined twitter! -> @scarybeasts

[0x2] mdowd: @rognapasta Nice one tiny!

[0x3] mdowd: @marcins Nope, luckily not.. that would have sucked!

[0x4] mdowd: Home at last

[0x5] mdowd: @dinodaizovi @dguido In the 10 years or so I have worked from home, I have always maintained a neatly trimmed win32 haircut

[0x6] mdowd: @rognapasta I'll miss you too rogna lynn pasta! You SHOULD visit!

[0x7] mdowd: Heading home today. Long flights are the worst.

[0x8] mdowd: @barnaby_jack Yeah, I feel like I possibly went a bit overboard there

[0x9] mdowd: Finally posted the next Chrome blog on Azimuth's website (Part 2 of 3: IPC Framework): http://tinyurl.com/29ts8se. Enjoy!

[0xA] mdowd: @csima About time! Or did you mean that's bad? :)

Realtime Community | IT Compliance

The Realtime IT Compliance Community is an objective source for information related to IT Compliance, regulations, information security, and data protection. The community provides a wide range of resources including blogs, articles, white papers, forums and podcast as well as links to external resources.

[0x1] Smart Grid Privacy: Possible Privacy Standards To Address Concerns

[0x2] 15 Smart Grid Privacy Concerns + Other Smart Grid Thoughts

[0x3] HIPAA And Surveillance In Hospitals

[0x4] CEs and BAs: Be HIPAA/HITECH Compliant Or Pay A Hefty Penalty

[0x5] Smart Grid Privacy: Laws and Implications

[0x6] 6 Critical Factors for Effective Information Security & Privacy Policies

[0x7] Who Are Your Business Associates?

[0x8] HIPAA/HITECH Etc. Retention: Does Your Reality = Your Requirements?

[0x9] Proposed HIPAA Privacy Rule Change Explicitly Makes Genetic Info PHI

[0xA] Privacy For The Deceased

Security Central - Infoworld

[0x1] Microsoft upgrades free app security tool

[0x2] Women perform well on Defcon social engineering test

[0x3] Secunia security program automatically tracks down, applies patches

[0x4] Skyrocketing viruses, less danger?

[0x5] Global spam hits all-time high

[0x6] Microsoft still mum on programs prone to DLL hijacking attacks

[0x7] Eight great virtual appliances for VMware, free for the downloading

[0x8] What it takes to shut down a botnet

[0x9] Google disputes bug patching report

[0xA] Scammers prey on required Twitter update

Martin McKeay's blog

[0x1] Hacking locks instead of computers

[0x2] Did she think this of the potential consequences?

[0x3] Escaping a virtual machine

[0x4] Certs: Added value or minimum requirement?

[0x5] The dubious effects of monitoring surfing habits

[0x6] Should your ISP protect you from yourself?

[0x7] Was the iPhone ready for prime time?

[0x8] Maynor isn't the Sell Out or LMH

[0x9] Infosec Sell Out outed, disappears

[0xA] VA employee tried to hide the damage

ITWeb Internet

Latest ICT Internet news

[0x1] King III links in with social networks

[0x2] Rivals gain from Google book deal

[0x3] US lawmaker rallies broadband changes

[0x4] Twitter offers advertising service

[0x5] Websense harnesses cloud

[0x6] FinSwitch introduces Web services

[0x7] IP over avian carrier

[0x8] Initiative sees teachers collaborate online

[0x9] Asian sites profit from virtual money

[0xA] Obama warns teens of Facebook

Infosecurity.US

Information Security And Occasional Forays Into Other Realms

[0x1] John Sherffius: Hamas Replies

[0x2] BlueBox, Jobs, Woz, and Capn

[0x3] XKCD: The Carriage

[0x4] SUSE Security Announcement, Local Privilege Escalation Detailed

[0x5] Steve Breen: 1945, 2010

[0x6] Apple Updates iTunes, Vulnerability Mitigated

[0x7] Steve Benson: Persian Lights…

[0x8] New, Pernicious BotNet Emerges

[0x9] VMWare Announces ESX Console Security Update

[0xA] Nick Anderson: Egg

TippingPoint DVLabs Threat Protection Updates

Monthly threat protection updates from TippingPoint DVLabs. For more information, visit dvlabs.tippingpoint.com

[0x1] TippingPoint DVLabs Threat Protection Update - November 2009

[0x2] TippingPoint DVLabs Threat Protection Update - July 2009

[0x3] TippingPoint DVLabs Threat Protection Update - June 2009

[0x4] TippingPoint DVLabs Threat Protection Update - May 2009

[0x5] TippingPoint DVLabs Threat Protection Update - April 2009

[0x6] TippingPoint DVLabs Threat Protection Update - March 2009

[0x7] TippingPoint DVLabs Threat Protection Update - February 2009

[0x8] TippingPoint DVLabs Threat Protection Update - January 2009

[0x9] TippingPoint DVLabs Threat Protection Update - December 2008

[0xA] TippingPoint DVLabs Threat Protection Update - October 2008

Ministry of Justice Latest news

[0x1] Tribunal awards: defaulters' names to be put on public debt register

[0x2] Powers of Attorney cost reduction takes effect

[0x3] New probation trusts announced to cut reoffending

[0x4] Law firms to allow non-lawyer partners

[0x5] Appointment of new members to Advisory Panel on Public Sector Information

[0x6] Guide to Criminal Procedure (Amendment No. 2) Rules 2008

[0x7] Her Majesty's Courts Service key performance indicators 2009-10

[0x8] Public have their say on how criminals payback

[0x9] Domestic violence: 18 new special courts announced

[0xA] Justice minister welcomes annual report on deaths in custody

BugSpy.net - Latest Reports

[0x1] Typo3 (stopper severity): Problem to generate textpic tt_content with eID (- TYPO3 Core -)

[0x2] Maven 2 (and related) (stopper severity): 'org.apache.maven.plugins:maven-install-plugin:2.3.1'. A required class is missing: org.codehaus.plexus.digest.Digester

[0x3] AlfrescoCMS (stopper severity): Cifs server cannot be started on windows x64 platforms

[0x4] Enlightenment (stopper severity): Eet doesn't save correctly small cipher data

[0x5] Debian (critical severity): new version of crypttab doesn't work without changing config file: it is uncompatible with previous version

[0x6] Debian (critical severity): lighttpd: daemon fails to start

[0x7] Mono (critical severity): gtk-sharp-2.12.10.win32.msi will not install

[0x8] Simple Machines Forum (critical severity): Installing mods crashes package manager (SMF 2.0)

[0x9] Axis2 (critical severity): CLONE -NullPointerException in internalSerializeAndConsume

[0xA] freedesktop.org (critical severity): [softpipe] SIGSEGV draw/draw_pt_fetch_shade_pipeline.c:189

National Vulnerability Database

This feed contains the most recent CVE cyber vulnerabilities published within the National Vulnerability Database.

[0x1] CVE-2010-2954

[0x2] CVE-2010-2532

[0x3] CVE-2010-2240

[0x4] CVE-2010-2226

[0x5] CVE-2010-1507

[0x6] CVE-2010-1325

[0x7] CVE-2010-3212

[0x8] CVE-2010-3211

[0x9] CVE-2010-3210

[0xA] CVE-2010-3209

GeekDad

Parents, Kids and the Stuff We Obsess About

[0x1] PAX 2010 Photostream – Updated All Weekend

[0x2] PAX Primers: Come to the GeekDad Panel Saturday at 11:00!

[0x3] Dork Tower Friday

[0x4] Heroscape Proves Fun For All Game Types

[0x5] Review: Save the Humans—6th Mega’s Puff Pufffor iPhone

[0x6] Top 10 Obscure Superheroes Who Deserve Their Own Movies (GeekDad Wayback Machine)

[0x7] The JVN Design Challenge: VEX Marvels

[0x8] Wii Party Gets Physical

[0x9] Harry Potter and the Return to Lego

[0xA] Geek Cookbook: Recipes Wanted!

Techworld.com Networking

Latest IT articles from Techworld's Networking channel

[0x1] Cisco buys Arch Rock wireless smart grid company

[0x2] How to get started with a blade system

[0x3] Opsview Community Edition review

[0x4] Cacti review

[0x5] Brocade adds 100G Ethernet to switch and router line

[0x6] Is Cisco making a play for Skype?

[0x7] Skype launches Skype Connect enterprise voice calling

[0x8] Sonos ZonePlayer S5 review

[0x9] Vyatta upgrades routing software for IPv6

[0xA] Verizon Business says enterprises need to move to IPv6

The Register - Security

Biting the hand that feeds IT

[0x1] Nigerian man gets 12 years for $1.3m 419 scam

[0x2] Spammers latch onto Ping to pump iPhone survey scams

[0x3] Symantec Snoop Dogg rap contest site rickrolled

[0x4] Phone bugging scandal reignited as NotW suspends reporter

[0x5] Microsoft freshens retro code lock-down tool

[0x6] iTunes update plugs WebKit flaw

[0x7] Symantec and Snoop Dogg launch cybercrime rap contest

[0x8] Cyber-jihadists deface home of teddy bears' picnic

[0x9] Feds crack phone clone scam that cost Sprint $15m

[0xA] Microsoft releases FixIt for critical flaw in 100 apps

Securitas Operandi™

Incorporating security and risk into everyday thought.

[0x1] Certification and Experience: Putting the Cart Before the Horse

[0x2] How to opt out from advertising tracking cookies

[0x3] Connection? TSA Breach + airliner bomb attempt

[0x4] Time Magazine – Google Earth mystery solved

[0x5] E-mail security problems and the Canadian ISPs that are ignoring them

[0x6] TSA learns redaction lesson the hard way…

[0x7] Breathing new life into old hardware with Ubuntu

[0x8] Rest in peace: officers Renninger, Griswold, Owens and Richards

[0x9] Switch to Kaspersky

[0xA] Security question: being watched while watching videos

Data center news from Network World Fusion

The latest data-center news and analysis from NetworkWorld.com.

[0x1] Layer 2 Data Center Interconnect options

[0x2] Fujitsu says green IT services can cut bills by 20 percent

[0x3] Brocade set to unveil 100G Ethernet

[0x4] Water cooling returns to IBM mainframe

[0x5] Hurricane Earl may test IT teleworkers

[0x6] Dell hawks its new modular data center

[0x7] Moving a data center? Avoid these four career-limiting mistakes

[0x8] Green IT remains immature, emmission offsets highly unlikely

[0x9] Purdue app slows servers when cooling fails

[0xA] Data center switch maker teams with VMware to optimize gear for virtualization

CSOONLINE.com - Critical Infrastructure

[0x1] Security at the Little League World Series

[0x2] How Your Business Can Avoid Being Collateral Damage In A Cyber War

[0x3] What it's like to be grilled by the Secret Service

[0x4] Artful security: Design elements that ensure security, but also emphasize style

[0x5] Happy vacation! Security at tourist spots

[0x6] What if the smart grid has stupid security?

[0x7] CSO Compass Awards 2010: Alan Nutes

[0x8] Times Square bomb scare may mean new levels of security in the U.S., says former police chief

[0x9] The evil men (can) do with embedded systems

[0xA] Howard Schmidt: Cybersecurity Battle 'Different' This Time

EarthWeb IT Management News & Views

EarthWeb IT Management News & Views offers busy IT managers up-to-date reports and insightful analysis of IT industry trends.

[0x1] Microsoft Looks to 'Mitigate' Security Flaws With Updated Tool

[0x2] FCC Report Finds Subpar Broadband Speeds

[0x3] IT Holding Back on Virtualizing Business-Critical Apps

[0x4] Cisco Adds Social Media to Call Centers

[0x5] Intel Invests Heavily in Virtualization

[0x6] Microsoft: Android More Expensive

[0x7] Tech Comics: "Unfriending"

[0x8] Top 20 Android Security Apps

[0x9] Apple Patches iTunes Security Vulnerabilities

[0xA] Heartland to Pay Discover $5 Million for Security Breach

The UNIX and Linux Forums

UNIX and Linux Forums - Learn UNIX, UNIX commands, Linux, Operating Systems, System Administration, Programming, Shell, Shell Scripts

[0x1] Need help for export command

[0x2] N-Pad 1.1

[0x3] BitNami Alfresco Stack 3.3g-0 nojdk

[0x4] BitNami SugarCRM Stack 6.0.1-0

[0x5] BitNami Drupal Stack 6.19-0

[0x6] Shell script to remove files

[0x7] New committer: swills (ports)

[0x8] wput $1 and/or $FTPU -p $FTPP $FTPS $FTPF - stupid question??

[0x9] Is it wrong this worries me?

[0xA] What's the command to remove empty lines with sed?

Michael Howard's Web Log

A Simple Software Security Guy at Microsoft!

[0x1] Security Sessions at TechEd in Australia and New Zealand

[0x2] ATL, MS09-035 and the SDL

[0x3] Integrating the SDL process into Visual Studio

[0x4] A Conversation About Threat Modeling

[0x5] Ken Johnson (Skywing) joins Microsoft

[0x6] Free Download: Writing Secure Code for Windows Vista

[0x7] Secure software development practices 'not rocket science'

[0x8] A Proactive Approach to Building a Successful Security Development Lifecycle Program

[0x9] Improvements in Office Security

[0xA] Volume 5 of the Microsoft Security Intelligence Report is out

SANS Internet Storm Center, InfoCON: green

[0x1] Apple Releases Two Security Updates (One for OSX, One for iTunes) : http://support.apple.com/kb/HT4312 and http://support.apple.com/kb/HT4328, (Fri, Sep 3rd)

[0x2] Microsoft EMETv2 released, (Thu, Sep 2nd)

[0x3] SDF, please!, (Thu, Sep 2nd)

[0x4] Month of Undisclosed 0-day Bugs, (Wed, Sep 1st)

[0x5] Microsoft issues updates to sysinternals ProcDump and Process Monitor: http://blogs.technet.com/b/sysinternals/archive/2010/08/30/updates-procdump-process-monitor-and-a-new-mark-s-blog-post.aspx, (Wed, Sep 1st)

[0x6] VMWARE releases 2 security advisories for ESX Service Console: http://lists.vmware.com/pipermail/security-announce/2010/000103.html and http://lists.vmware.com/pipermail/security-announce/2010/000104.html, (Wed, Sep 1st)

[0x7] Interesting PHP injection, (Tue, Aug 31st)

[0x8] Abandoned free email accounts, (Sun, Aug 29th)

[0x9] Apple QuickTime potential vulnerability/backdoor, (Mon, Aug 30th)

[0xA] New poll on mobile device security http://isc.sans.edu/poll.html, (Mon, Aug 30th)

BankInfoSecurity.com Blogs RSS Syndication

BankInfoSecurity.com.com Blog RSS Feeds

[0x1] A Step Closer to EMV

[0x2] Be Mindful of Insider Fraud Against Seniors

[0x3] We Could Learn From the Czechs

[0x4] Reports Showcase Security Gap

[0x5] Florida Police: 'Pay With Cash Only'

[0x6] Confessions of an ATM Hacker

[0x7] Spreadsheets Still Subject to Fraud Target

[0x8] Mergers Reflect a Greater Trend in IT-Infosec Synergy

[0x9] Account Takeover Pt. III: Back to Cash?

[0xA] The Truth about Inconvenience: How EMV will come to the U.S.

LinuxSecurity.com: FreeBSD Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Review: The Official Ubuntu Book

[0x3] FreeBSD: Kernel memory disclosure in procfs and linprocfs

[0x4] FreeBSD: fetch Overflow error

[0x5] FreeBSD: syscons Boundary checking errors in syscons

[0x6] FreeBSD: cvs number of vulnerabilities

[0x7] FreeBSD: kernel Improper memory access vulnerability

[0x8] FreeBSD: kernel Excessive privilege vulnerability

[0x9] FreeBSD: core:sys Buffer cache invalidation vulnerability

[0xA] FreeBSD: cvs Heap overflow vulnerability

XSSed syndication

You are welcome to syndicate and share xssed.com contents

[0x1] Diigo Toolbar - Global XSS and Information Leakage in SSL URLs

[0x2] Dot Net Nuke (DNN) XSS Vulnerability

[0x3] Sun Java Server Faces Input Handling Cross-Site Scripting

[0x4] ManageEngine ServiceDesk Plus Cross-Site Scripting Vulnerability

[0x5] Savvy Content Manager "searchterms" Cross-Site Scripting

[0x6] Alkacon OpenCms "filePath" Cross-Site Scripting and File Disclosure

[0x7] IBM Lotus QuickPlace Cross-Site Scripting Vulnerability

[0x8] BosClassifieds Classified Ads System "returnTo" Cross-Site Scripting

[0x9] Zimbra Collaboration Suite Script Insertion Vulnerability

[0xA] WebCT Mail/Discussion Board Message Script Insertion

Security - RSS Feed

Security news - RSS Feed

[0x1] Internet Scammer Gets Nearly 13 Years for $1.3M Fraud

[0x2] College Data Breaches Underscore Security Challenges

[0x3] Apple Ping Hit by Spammers

[0x4] Microsoft Releases Application Security Tool Kit for Developers

[0x5] Facebook Adds Remote Logout Security Feature

[0x6] Check Point Pushes Virtual Security for VMware Environments

[0x7] Spammers Stay Busy Despite Pushdo Botnet Hit

[0x8] HP WebScan Feature Can Expose Scanned Documents

[0x9] How to Design a Secure DMZ

[0xA] Microsoft Releases New 'Fix-it' for DLL Vulnerability

Twitter / Panda_Security

Twitter updates from Panda Security / Panda_Security.

[0x1] Panda_Security: We want your feedback please! RT @muhamadruzaini testing Panda Cloud Antivirus

[0x2] Panda_Security: Try Cloud is an AV 4 Laptop! http://bit.ly/Free_AV RT @Melllahhh08 laptop "Virus protection not found Windows did not find antivirus soft...

[0x3] Panda_Security: "Rootkits: The Invisible Threat" in Panda Support Blog #LaPiazza http://bit.ly/a7tZhi

[0x4] Panda_Security: You can try with Panda Cloud. Is free an easy to use! :) http://bit.ly/Free_AV RT @bretfriedrich what antivirus do i need? any?

[0x5] Panda_Security: "We're good at finding names" New post in #PandaLabs Blog http://bit.ly/bh2FYp

[0x6] Panda_Security: Rescue of Chilean miners used as new lure by banker #Trojan. Details: http://bit.ly/dBFh8k #Chile

[0x7] Panda_Security: PandaLabs report: Chilean miners tragedy used to distribute #malware http://bit.ly/dsqyIb

[0x8] Panda_Security: Thanks to @Compixels Team for the Panda Cloud Review http://bit.ly/9d2Ml9

[0x9] Panda_Security: Yeah! We can. Try Cloud http://bit.ly/Free_AV RT @Helaobieberfeva can someone please tell me the best antivirus i can use coz the one i...

[0xA] Panda_Security: Post in #PandaLabs: Mariposa Botnet: The Slovenian Story http://bit.ly/bZtRvj

The Grey Corner

A blog focused on the related subjects of software exploitation, penetration testing and computer incident detection and response.

[0x1] Bypassing Restrictive Proxies Part 2, Modified Windows Shell via Metasploit PassiveX

[0x2] Version 0.2 of SSL Testing Tool ssltest.pl

[0x3] SSL Testing Tool ssltest.pl

[0x4] Bypassing Restrictive Proxies Part 1, Encoded Executables and DNS Tunneling

[0x5] Bypassing AntiVirus Detection for Malicious PDFs

[0x6] Download and Execute Script Shellcode

[0x7] Running Regripper on Linux

[0x8] Random Links

[0x9] Bypassing Antivirus Detection: Netcat

[0xA] Links and trojans and zipsploits, oh my!

SecuriTeam

Welcome to the SecuriTeam RSS Feed - sponsored by Beyond Security. Know Your Vulnerabilities! Visit BeyondSecurity.com for your web site, network and code security audit and scanning needs.

[0x1] Mozilla Firefox nsTreeSelection Dangling Pointer Code Execution Vulnerability

[0x2] TANDBERG Video Communication Server Arbitrary File Retrieval Vulnerability

[0x3] Mozilla Firefox Plugin Parameter EnsureCachedAttrParamArrays Code Execution Vulnerability

[0x4] VMWare VMnc Codec HexTile Encoding Buffer Overflow Vulnerability

[0x5] VMware Products Movie Decoder Heap Overflow Vulnerability

[0x6] Netifera - Modular Open Source Platform for Security Tools

[0x7] WarVOX - Tools for Exploring, Classifying, and Auditing Telephone Systems

[0x8] Webshag - Web Server Audit Tool

[0x9] Browser Fuzzer

[0xA] FSpy - Linux Filesystem Activity Monitoring

Schneier on Security

A blog covering security and security technology.

[0x1] Friday Squid Blogging: Squid Car

[0x2] UAE Man-in-the-Middle Attack Against SSL

[0x3] Successful Attack Against a Quantum Cryptography System

[0x4] Cyber-Offence is the New Cyber-Defense

[0x5] Wanted: Skein Hardware Help

[0x6] More Skein News

[0x7] Eavesdropping on Smart Homes with Distributed Wireless Sensors

[0x8] High School Teacher Assigns Movie-Plot Threat Contest Problem

[0x9] Misidentification and the Court System

[0xA] Security Theater on the Boston T

MacRumors : Mac News and Rumors

the mac news you care about

[0x1] Apple Announces One Million Ping Users in First Two Days

[0x2] Steve Jobs Defends New iTunes 10 Icon Against Criticism

[0x3] Apple Adds Showtimes to Movie Trailer Site

[0x4] Apple Removes Custom Ringtone Creation in iTunes 10

[0x5] Apple Reportedly Looking to Push Monthly iPad Production to 3 Million

[0x6] iOS Passes Linux to Become Third-Most Popular Internet Browsing Platform

[0x7] Apple Details Features in iOS 4.2 for iPad

[0x8] Apple-Facebook Controversy Over Ping Rooted in API Usage, Feature May Return

[0x9] Apple Confirms No Software Update for Original Apple TV

[0xA] Apple Seeds Mac OS X 10.6.5 Build 10H535 to Developers

Cisco Learning Home : All Content - Security

All Content in Security

[0x1] Require Help....

[0x2] vpn + ramote access issue

[0x3] ICMP question, why is it denying ping ??

[0x4] Need some help with VPN please help me......

[0x5] CISCO NAC - clients getting pop-up messages ? how to fix it !~!!!!

[0x6] What ASA Software Version does the Test Simulator use?

[0x7] ASA vs PIX

[0x8] Cisco WCCP Security

[0x9] ASA - Inspect ICMP with PMTUD

[0xA] ASA Guidelines - VLANS

InternetNews Realtime News for IT Managers

All the top news, features, analysis and insight into enterprise and Internet technology, geared for IT managers and delivered by the best in the industry.

[0x1] Microsoft IE Browser Slips in Share After Gains

[0x2] Microsoft Tool 'Hardens' Mission Critical Apps

[0x3] Twitter Touts Mobile, Third-Party Client Use

[0x4] Firms Slow to Virtualize Mission-Critical Apps

[0x5] Dell Regains No. 2 Spot in PC Market Share

[0x6] Cisco Sprucing Up Call Centers With Social Media

[0x7] FCC Study Finds Broadband Speeds Lagging

[0x8] Cisco Snags Arch Rock in Smart Grid Play

[0x9] Microsoft Begins Yahoo Ad Integration

[0xA] Google, AOL Extend Search Agreement

The Web Application Security Consortium / FrontPage

The Web Application Security Consortium (WASC) is an international group of experts, industry practitioners, and organizational representatives who produce open source and widely agreed upon best-practice security standards for the World Wide Web.

[0x1] Robert Auger edited FrontPage

[0x2] Robert Auger edited FrontPage

[0x3] Robert Auger edited FrontPage

[0x4] Robert Auger edited FrontPage

[0x5] Robert Auger edited FrontPage

[0x6] Robert Auger edited FrontPage

[0x7] Robert Auger edited FrontPage

[0x8] Robert Auger edited FrontPage

[0x9] Robert Auger edited FrontPage

[0xA] Robert Auger edited FrontPage

Fortinet Security Blog

The latest news and information about Fortinet products and services for Real Time Network Protection.

[0x1] Fortinet Debuts “Security Minute,” a Video Threat Landscape Report

[0x2] August 2010 Threat Report: Total Ransom

[0x3] DLL pre-loading research: the pre-release

[0x4] Stop the (Network Security) Insanity!

[0x5] iPhone 4 / iPad: The Keys Out Of Prison

[0x6] Mobile Malware Sends WAP Push SMS

[0x7] Avoiding the zero-day void

[0x8] Symbian Signed Mobile Malware: One Gang?

[0x9] July 2010 Threat Report: Zero-days attacked in the wild, Obfuscated emails circulate

[0xA] API Resolution Algorithm 2

Welcome to the Frontpage

ThreatChaos. News, views and analysis. A security blog providing original research from the IT-Harvest team.

[0x1] The good, the bad, and the ugly in the Pentagon's Cyberstrategy

[0x2] Intel announces intent to acquire McAfee

[0x3] What CXOs consistently fail to grasp about enterprise security

[0x4] Cyber war is not the Cold War

[0x5] Legislating Global Internet Freedom

[0x6] Act now to address your compromised networks

[0x7] New cybersecurity focus for federal R&D group

[0x8] DHS deploying the wrong weapons in cyberwar

[0x9] Cyberwar debate rages on

[0xA] Surviving Cyberwar published

HBH News Feed

HellBoundHackers RSS Feed

[0x1] iPad 3G owners' e-mail addresses hacked

[0x2] Google adds Caffeine for more up-to-date results

[0x3] Microsoft patches IE8's Pwn2Own bug

[0x4] HBH IRC

[0x5] UK launches competition to find cyber security experts

[0x6] Microsoft pitches cloud to help manage PCs

[0x7] Will light replace cables in blade servers?

[0x8] Mozilla confirms critical Firefox bug

[0x9] Pirate to Pay $1.5m to Nintendo

[0xA] Information Disclosure Vulnerability found in IE

Oracle Security Alerts

Security Alerts Issued by Oracle

[0x1] Oracle Critical Patch Update (CPU) - July 2010

[0x2] Oracle Critical Patch Update (CPU) - April 2010

[0x3] Oracle Security Alert for CVE-2010-0073 - February 2010

[0x4] Critical Patch Update - January 2010

[0x5] Critical Patch Update - October 2009

[0x6] Critical Patch Update - July 2009

[0x7] Critical Patch Update - April 2009

[0x8] Critical Patch Update - January 2009

[0x9] Critical Patch Update - October 2008

[0xA] Critical Patch Update - July 2008

Gandi IWI Blog

[0x1] IP Transit Outage in France Telecom

[0x2] Maintenance Gandi.Net and API

[0x3] .CN domain creation suspension

[0x4] -50% discount for .ME extensions

[0x5] .HK domains now available at Gandi!

[0x6] Accented .EU domain names open on December 10th at 11:00 CET!

[0x7] .PT domains available at Gandi

[0x8] Network Maintenance overnight 19-20 November

[0x9] Hosting: Launch of multiple IP addresses for your servers

[0xA] Your server on IPv6?

DRJ Current Articles

Current Articles from Disaster Recovery Journal

[0x1] Mitigating Wildfire Disaster: Early Detection and Commitment

[0x2] A Better Way to Recover from Natural Disasters

[0x3] 11 Steps to a Better BIA

[0x4] Avoiding Laptop Separation Anxiety At The Airport

[0x5] Reserve Response to Search and Rescue Operations Following Hurricane Katrina

[0x6] Enabling data security policy hardware independent

[0x7] Seven Crucial Personal Strategies to Get Your Boss to Listen to You

[0x8] What Do I Do If My Business Continuity Program Is Failing?

[0x9] Datacenter Energy Regulation: It’s Real, It’s Coming, It’s Expensive

[0xA] Compliance & Disaster Proof Hardware: Fireproof Waterproof Hard Drives for Electronic ...

Blog by Paul Golding

Blog by Paul Golding

[0x1] Cool Platform job at O2...

[0x2] Big Data, Spawn, Connected Services and Other Stuff

[0x3] Eduserv Symposium - The Mobile University (is years behind)

[0x4] Day one of Chirp conference and my hack...

[0x5] No such thing as a smart pipe...

[0x6] Start-up ecosystems...

[0x7] Some great things on the horizon 2010...

[0x8] O2 Incubator has been upgraded...

[0x9] Project Raindrop and Project #Blue and 2010...

[0xA] O2 Start-Up Incubation Program - already rocking!

Upcoming Security Alerts

Upcoming Security Alerts

[0x1] Oracle Database

[0x2] Oracle Database

[0x3] Oracle Database

[0x4] Oracle Secure Enterprise Search

[0x5] Documentation bug concerning a special privilege

[0x6] Oracle Database

[0x7] Oracle Database

[0x8] Oracle Database

[0x9] Oracle Database

[0xA] Oracle Database

BBC News - Technology

The latest stories from the Technology section of the BBC News web site.

[0x1] PS3 hack escapes court challenge

[0x2] Memristor revolution backed by HP

[0x3] Global broadband divide revealed

[0x4] Samsung releases iPad competitor

[0x5] Apple creates a social network

[0x6] US seeks input on net data rules

[0x7] Dell pulls out of battle for 3Par

[0x8] Sony rolls out rival to iTunes

[0x9] Roaming iPhone glitch continues

[0xA] Rival benefits from Digg revamp

CSOONLINE.com - Application Security

[0x1] Organizing sensitive data in the cloud

[0x2] Preserving the integrity of software through the supply chain

[0x3] Indian e-voting researcher released on bail

[0x4] 3 areas where FUD needs to stop

[0x5] Apple fixes security bugs in Mac OS X

[0x6] Microsoft releases tool to block DLL load hijacking attacks

[0x7] Researcher told Microsoft of Windows apps zero-day bugs 6 months ago

[0x8] 40 Windows Apps Contain Critical Bug, Says Researcher

[0x9] Adobe to patch Reader zero-day bug

[0xA] Facebook bug could give spammers names, photos

SecTechno

Information Security Blog

[0x1] Ways for Tracking your Stolen Laptop

[0x2] Wardriving These Days (Part 2)

[0x3] Symantec: Tapsnake Game Tracks Your Location

[0x4] Vulnerability Makes All Facebook Accounts Exposed

[0x5] DDoS Attack Target DNS Made Easy

[0x6] Microsoft to Fix 34 Vulnerabilities on Next Tuesday

[0x7] Zeus Grabbing Kaspersky’s Digital Signatures

[0x8] Wardriving These Days (part 1)

[0x9] Security Acts Magazine No.4

[0xA] WPA2 Might Be Spoofed!

Packet Storm Security Last 100

100 Most Recent Packet Storm File Additions

[0x1] ie8-forcedtweet.txt

[0x2] smbind-sql.txt

[0x3] pligg104-sql.txt

[0x4] moaub03-trendmicro.pdf

[0x5] moaub03-visinia.pdf

[0x6] googlechrome-corruption.txt

[0x7] moaub-visinia.txt

[0x8] moaub-trendmicro.txt

[0x9] dsa-2102-1.txt

[0xA] HPSBMA02572-SSRT100082.txt

Declan McCullagh's Politech

Politech is the oldest Internet resource devoted to politics and technology. Launched in 1994, the Politech mailing list and then the web site has chronicled the growing intersection of law, culture, technology, politics, and law. Edited by Declan McCullagh.

[0x1] Politicians push for mandatory data retention laws, bipartisanly

[0x2] Who'd make the most technology-friendly president? Discuss.

[0x3] Judge rules defendant can't be forced to divulge PGP passphrase

[0x4] ITU botnet paper published in draft form, comments requested

[0x5] David Burt and his Filtering Facts Web site are back

[0x6] FTC Internet advertising summit in Washington this week

[0x7] Hamline University student suspended after pro-gun rights email

[0x8] MIT student picking up friend at airport nearly shot, charged with "infernal machine" crime

[0x9] Paul Levy: Politicians, infomercial kings try to stifle anonymous Internet speech

[0xA] Colorado sheriff creates roadblock so private firm can demand DNA blood samples

The InfoSec Blog

System Integrity: Without Integrity you don't have Security

[0x1] IAM - Basics - Policy

[0x2] You don’t need a Firewall Security Policy

[0x3] Google Phasing out Windows

[0x4] “Impact” is not a Metric

[0x5] Risk Analysis Makes No Sense … does it?

[0x6] Risk is Not a Primary Metric

[0x7] The Classical Risk Equation

[0x8] A Security Policy needs to be abstract not specific

[0x9] More on how to win friends and influence management

[0xA] On the one hand …

WindowSecurity.com blogs

Welcome to our Network Security blogs. The blogs are updated on a regular basis with the latest news, information and insider gossip within the network security world and security related fields, such as cryptography.

[0x1] FCC solicits comments on cybersecurity

[0x2] Tool released to address DLL preloading remote attack vector

[0x3] Security researcher says newly discovered bug makes .LNK vulnerability look “almost pointless”

[0x4] Intel moving into the software security business with McAfee purchase?

[0x5] Rethinking the security implications of virtualization

[0x6] Free biometric logon software for Windows

[0x7] Another mobile security threat

[0x8] Fake certificates open the door to attackers

[0x9] A day at the Opera could put your network at risk

[0xA] iPhones and iPads targeted by malware writers

CSOONLINE.com - Metrics/Budgets

[0x1] Security metric techniques: How to answer the 'so what?'

[0x2] IT risk assessment frameworks: real-world experience

[0x3] Maley: Here's How Firing REALLY Went Down

[0x4] Security Consultants and Lawyers: Don't Trust Them to Manage Risks

[0x5] RSA 2010: Infosec Pros Get Raises Despite Recession

[0x6] Security visualization hardware and software

[0x7] Physical Security Risk and Countermeasures: Effectiveness Metrics

[0x8] Physical Security Risk and Countermeasures: Information Requirements

[0x9] Companies on IT Security Spending: Where's the ROI?

[0xA] Clear Metrics for Cloud Security? Yes, Seriously

Carnal0wnage Blog

carnal0wnage and zero(day) solutions blog

[0x1] Scanning IPv6 Enabled Hosts

[0x2] Scapy, Traceroute and Pretty Pictures

[0x3] Reversing Android Apps

[0x4] Using the Android Debug Bridge (adb)

[0x5] Accessing your android emulator on the command line

[0x6] Fatal System Error Pseudo Book Review

[0x7] Revisiting HALFLM Stuff

[0x8] more with rpcclient

[0x9] Firefox Saved Passwords

[0xA] Using the Metasploit PHP Remote File Include Module

good coders code, great reuse

Peteris Krumins' blog about programming, hacking, software reuse, software ideas, computer security, google and technology.

[0x1] Reflections on Node.js Knockout Competition

[0x2] StackVM Demo Video #2

[0x3] Announcement: I am doing a startup - StackVM!

[0x4] Three Years of Blogging

[0x5] The Four Polymorphisms in C++

[0x6] Yet Another Ten One-Liners from CommandLineFu Explained

[0x7] On Functors

[0x8] Turn any Linux computer into SOCKS5 proxy in one command

[0x9] A HTTP Proxy Server in 20 Lines of node.js Code

[0xA] Another Ten One-Liners from CommandLineFu Explained

Veracode in the News

Read the latest news about Veracode

[0x1] 8.20.10 - CNET

[0x2] 8.18.10 - Network World

[0x3] 8.17.10 - SearchSecurity

[0x4] 8.17.10 - Mercury News

[0x5] 8.17.10 - Dark Reading

[0x6] 8.16.10 - InformIT

[0x7] 8.13.10 - Brand X

[0x8] 8.12.10 - Threatpost

[0x9] 8.09.10 - BBC

[0xA] 8.09.10 - Forbes

Twitter / exploitdb

Twitter updates from Exploit Database / exploitdb.

[0x1] exploitdb: [dos] - Intel Video Codecs v5 Remote Denial of Service: http://bit.ly/cY86Ks

[0x2] exploitdb: [dos] - FFDshow SEH Exception leading to NULL pointer on Read: http://bit.ly/cr2YL9

[0x3] exploitdb: [remote] - Trend Micro Internet Security 2010 ActiveX Remote Exploit: http://bit.ly/aYL2dG

[0x4] exploitdb: [webapps] - smbind http://bit.ly/aYdHhI

[0x5] exploitdb: [papers] - MOAUB #3 - Visinia CMS Multiple Vulnerabilities - 0day: http://bit.ly/bempcZ

[0x6] exploitdb: [papers] - MOAUB #3 - Trend Micro Internet Security Pro 2010 ActiveX extSetOwner - Binary Analysis: http://bit.ly/dhG3x4

[0x7] exploitdb: MOAUB #3 - Trend Micro Internet Security Pro 2010 ActiveX extSetOwner Remote Code Execution (BA) and Visinia 1.3 Multiple Vulnerabilities

[0x8] exploitdb: [remote] - Trend Micro Internet Security Pro 2010 ActiveX extSetOwner Remote Code Execution: http://bit.ly/d9UCwH

[0x9] exploitdb: [webapps] - MOAUB #3 - Visinia 1.3 Multiple Vulnerabilities: http://bit.ly/9u8ssu

[0xA] exploitdb: [webapps] - Shop a la Cart Multiple Vulnerabilities: http://bit.ly/dczM6Z

Computer Security News

News on Computer Security continually updated from thousands of sources around the net.

[0x1] Stay secure in WiFi hotspots

[0x2] Women Did Well on Defcon Social Engineering Test

[0x3] Scammers and spammers attack Apple's new Ping social network

[0x4] Prescott urges phone hack review

[0x5] Twitter crackdown on hackers posting links to viruses with launch of URL shortening service

[0x6] network security

[0x7] 'I gave too much away': David Blunkett's startling admission on UK-U.S. extradition treaty

[0x8] Phishing scam targets fast food customers

[0x9] Facebook won't shut down stalker

[0xA] FishNet Security Survey Reveals That Cloud Computing Will Replace...

ZDNET Video

[0x1] Apple TV has gone streaming

[0x2] iTunes 10 gets social with Ping

[0x3] Apple unveils revamped iPod Touch

[0x4] The new touch-screen iPod Nano

[0x5] Buttons are back on new iPod Shuffle

[0x6] Apple iOS updates coming soon

[0x7] Apple's antenna fix, free cases

[0x8] Do teenagers hate Facebook?

[0x9] Did the Web kill journalism, and will the iPad bring it back?

[0xA] The Future Of... Packaging

Twitter / DojoSec

Twitter updates from DojoSec / DojoSec.

[0x1] DojoSec: FREE Techno Forensics Promo. Select Sponsor/VIP payment, Type "0" amount paid, Use "DojoSec" Promo Code http://bit.ly/d0lfrs

[0x2] DojoSec: @marcusjcarey interview with @dakami (Dan Kaminsky) at ShmooCon http://bit.ly/9L0TvG

[0x3] DojoSec: DojoSec Happy Hour Tonight 7-9pm at Howl at the Moon Baltimore http://bit.ly/cQm9jF

[0x4] DojoSec: Next DojoSec Meetup will be March 4th 7-9pm at Howl Baltimore http://tinyurl.com/howlbmore

[0x5] DojoSec: Next DojoSec Meetup will be March 4th 7-9pm at Howl Baltimore http://tinyurl.com/howlbmore, no talks just fun!

[0x6] DojoSec: DojoCon 2009 Cloud Security Panel http://vimeo.com/7517519 http://bit.ly/8ZusJh

[0x7] DojoSec: I posted 14 photos on Facebook in the album "DojoSec" http://bit.ly/6VZb1j

[0x8] DojoSec: DojoSec Facebook Page up http://bit.ly/53AyB8 Become a Fan :)

[0x9] DojoSec: DojoSec Canceled due to inclement weather. :(

[0xA] DojoSec: DojoSec Sessions Ep. 1 - Jeremy Brown - Finding Vulnerabilities with Static Analysis - http://bit.ly/8hcOVL

US-CERT Cyber Security Tips

US-CERT Cyber Security Tips describe and offer advice about common security issues for non-technical computer users. Tips are restricted to a single topic, although complex issues may span multiple tips. Each tip builds upon the knowledge, both terminology and content, of those published prior to it.

[0x1] ST05-014: Real-World Warnings Keep You Safe Online

[0x2] ST05-013: Guidelines for Publishing Information Online

[0x3] ST05-012: Supplementing Passwords

[0x4] ST05-011: Effectively Erasing Files

[0x5] ST05-010: Understanding Web Site Certificates

[0x6] ST05-008: How Anonymous Are You?

[0x7] ST05-007: Risks of File-Sharing Technology

[0x8] ST05-005: Reviewing End-User License Agreements

[0x9] ST05-004: Avoiding Copyright Infringement

[0xA] ST04-023: Understanding Your Computer: Email Clients

CSO Blogs - Business Continuity

[0x1] The Forrester Information Security Maturity Model

[0x2] Wrapping up in Zurich

[0x3] AQAP - A Brief Overview of 'Inspire'

[0x4] Caveat Emptor - Why the Cloud is Still a High Risk Option

[0x5] New Usama Bin Laden MP3 released -

[0x6] Vulnerability disclosure revisited, and revisited, and revisited, ...

[0x7] Jihadi's Continue to Crack Software

[0x8] National Moment of Rememberance & The Lion of Fallujah

[0x9] Some Common Emergency Management Terms – Concepts

[0xA] Continuous Monitoring and Reporting - NASA's Jerry Davis

Christopher Mills

A place for stuff I write.

[0x1] Flag Question From My Dad

[0x2] What’s on your (ideal) border?

[0x3] That Shrimp Damn Near Melted My Face Off

[0x4] Today is cookie-baking day

[0x5] New Direction For This Blog

[0x6] Article: The Best Way To Remediate

[0x7] Installing and Configuring suPHP on CentOS 5.3

[0x8] Common Remediation Owner Enumeration (My Faux Standard In Development)

[0x9] Getting the data from the DB into the PHP Classes

[0xA] PHP Class for Calculating SCAP CVSS V2 Device Specific Score

TaoSecurity

Richard Bejtlich's blog on digital security and the practices of network security monitoring, incident response, and forensics.

[0x1] The Inside Scoop on DoD Thinking

[0x2] Review of Hacking Exposed: Wireless, 2nd Ed Posted

[0x3] GE Looking for Business Response Team Leader

[0x4] Bejtlich on Silver Bullet Podcast

[0x5] Review of Least Privilege Security Posted

[0x6] Bejtlich Teaching at Black Hat Abu Dhabi 2010

[0x7] Review of IT Security Metrics Posted

[0x8] Review of Practical Lock Picking Posted

[0x9] Consider Reading Network Flow Analysis

[0xA] World's Worst Security Visualization?

Uninformed Journal

Informative information for the uninformed

[0x1] Using dual-mappings to evade automated unpackers

[0x2] Analyzing local privilege escalations in win32k

[0x3] Exploiting Tomorrow's Internet Today: Penetration testing with IPv6

[0x4] Can you find me now? Unlocking the Verizon Wireless xv6800 (HTC Titan) GPS

[0x5] An Objective Analysis of the Lockdown Protection System for Battle.net

[0x6] ActiveX - Active Exploitation

[0x7] Context-keyed Payload Encoding

[0x8] Improving Software Security Analysis using Exploitation Properties

[0x9] Real-time Steganography with RTP

[0xA] PatchGuard Reloaded: A Brief Analysis of PatchGuard Version 3

Network World on Windows

The latest Windows news, analysis and feature articles from NetworkWorld.com.

[0x1] Google's App Inventor: First impressions

[0x2] Microsoft finalizes Windows Phone 7 code for fall release

[0x3] Microsoft to VMware: Windows is still relevant in the virtualization era

[0x4] VMware aims to displace Windows with cloud-based desktop apps

[0x5] VMware's ex-Microsoft exec Paul Maritz says Windows no longer center of innovation

[0x6] Windows and Linux servers grow at Unix's expense

[0x7] Microsoft: 'We love open source'

[0x8] Final release of Windows Phone dev tools due mid-September

[0x9] IBM to accelerate mobile unified communications

[0xA] Building a better netbook

Anton Chuvakin Blog - "Security Warrior"

LogChat: Andrew Hay and Anton Chuvakin talk about logging, log management and related topics

[0x1] Monthly Blog Round-Up – August 2010

[0x2] LogChat Podcast 1: Anton Chuvakin and Andrew Hay Talk Logs

[0x3] Fun Project Honeynet Log Challenge: Log Mysteries

[0x4] Another Fun SIEM Whitepaper

[0x5] Links for 2010-08-30 [del.icio.us]

[0x6] CEE Architecture Overview FINALLY Out!

[0x7] To Those Escaping from Sinking SIEM/Log Management Vendors

[0x8] Silly Compliance Poll

[0x9] CEE Update – Aug 2010

[0xA] Log Math

LinuxSecurity.com: Red_Hat Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Review: The Official Ubuntu Book

[0x3] Red Hat: 2010:0670-01: kernel: Important Advisory

[0x4] Red Hat: 2010:0661-01: kernel: Important Advisory

[0x5] Red Hat: 2010:0660-01: kernel: Important Advisory

[0x6] Red Hat: 2010:0659-01: httpd: Moderate Advisory

[0x7] Red Hat: 2010:0657-02: gdm: Low Advisory

[0x8] Red Hat: 2010:0653-01: ImageMagick: Moderate Advisory

[0x9] Red Hat: 2010:0651-01: spice-xpi: Moderate Advisory

[0xA] Red Hat: 2010:0652-01: ImageMagick: Moderate Advisory

Twitter / sans_isc

Twitter updates from SANS ISC / sans_isc.

[0x1] sans_isc: [Diary] Apple Releases Two Security Updates (One for OSX, One for iTunes) : http://support.apple.com/kb/HT4312 and... http://bit.ly/aL4CqD

[0x2] sans_isc: [Diary] Microsoft EMETv2 released, (Thu, Sep 2nd): Today, Microsoft released a new version of their Enhanced Mitig... http://bit.ly/c6hYQG

[0x3] sans_isc: [Diary] SDF, please!, (Thu, Sep 2nd): We're under a targeted malware attack!, a friend of mine yelled into the pho... http://bit.ly/cMs94u

[0x4] sans_isc: [Diary] Month of Undisclosed 0-day Bugs, (Wed, Sep 1st): As a heads up, the Exploit Database (exploit-db.com) is p... http://bit.ly/dbwa3l

[0x5] sans_isc: [Diary] VMWARE releases 2 security advisories for ESX Service Console: http://lists.vmware.com/pipermail/security-... http://bit.ly/bG5djS

[0x6] sans_isc: [Diary] Microsoft issues updates to sysinternals ProcDump and Process Monitor: http://blogs.technet.com/b/sysinter... http://bit.ly/d3b3lh

[0x7] sans_isc: [Diary] Interesting PHP injection, (Tue, Aug 31st): PHP injection attacks have become increasingly popular lately.... http://bit.ly/99twnx

[0x8] sans_isc: [Diary] Wireshark 1.4.0 released, (Tue, Aug 31st): This is a new release branch of Wireshark and they have added m... http://bit.ly/9O21st

[0x9] sans_isc: [Diary] Apple QuickTime potential vulnerability/backdoor, (Mon, Aug 30th): A vulnerability/backdoor in Apple Quick... http://bit.ly/aMhVpd

[0xA] sans_isc: [Diary] New poll on mobile device security http://isc.sans.edu/poll.html, (Mon, Aug 30th): ...(more)... http://bit.ly/dxVYxs

CSO Blogs - Physical Security

[0x1] AQAP - A Brief Overview of 'Inspire'

[0x2] Caveat Emptor - Why the Cloud is Still a High Risk Option

[0x3] New Usama Bin Laden MP3 released -

[0x4] Jihadi's Continue to Crack Software

[0x5] Compliance Management Challenges - Incomplete Coverage

[0x6] National Moment of Rememberance & The Lion of Fallujah

[0x7] Some Common Emergency Management Terms – Concepts

[0x8] Continuous Monitoring and Reporting - NASA's Jerry Davis

[0x9] Your Building Just Blew Up - Now What? (or Crisis? What Crisis?)

[0xA] An All Hazards Approach

XSSed syndication

You are welcome to syndicate and share xssed.com contents

[0x1] www.facebook.com Script Insertion

[0x2] ricerca.virgilio.it XSS

[0x3] www.bizrate.com Redirect

[0x4] bt.com Redirect

[0x5] cloudprotection.pandasecurity.com XSS

[0x6] mediapolis.rai.it XSS

[0x7] www.saintcorporation.com XSS

[0x8] sched.blackhat.com XSS

[0x9] www.godaddy.com XSS

[0xA] searchsecuritychannel.techtarget.com XSS

CSO Blogs - Identity Management

[0x1] Griftslist

[0x2] The Forrester Information Security Maturity Model

[0x3] Wrapping up in Zurich

[0x4] AQAP - A Brief Overview of 'Inspire'

[0x5] Tackling the Big Issues in Zurich: Day 1

[0x6] Caveat Emptor - Why the Cloud is Still a High Risk Option

[0x7] New Usama Bin Laden MP3 released -

[0x8] Vulnerability disclosure revisited, and revisited, and revisited, ...

[0x9] Jihadi's Continue to Crack Software

[0xA] Compliance Management Challenges - Incomplete Coverage

Hacked Gadgets - DIY Tech Blog

Many articles about hacking gadgets. Examples of extreme technology. DIY projects describing how to build electronic projects. Fun top 5 and top 10 lists.

[0x1] CMU Snakebots Climbs Tree

[0x2] Worlds Smallest TV Station from back in 1959

[0x3] Dune Bug E - Dune Buggy Electric Conversion Part 6

[0x4] Recording Emotions with the Emotiv Headset

[0x5] Levitating Rotating Globe

[0x6] Illuminatrix - Burning Man LED Project

[0x7] Name the Thing Contest - 146

[0x8] PIC AXE Microcontroller based High Speed Photography Trigger

[0x9] Vacuum Cleaner Subwoofer

[0xA] Launchpad MSP 430 Programming with Linux

extraexploit

everything or nothing

[0x1] DLL Hijacking - my test cases on a default HP notebook installation - CyberLink products vulnerable

[0x2] DLL Hijacking - my test cases

[0x3] Sorry, you may have found a bug.... (in Fiddler)

[0x4] strange .info TLD domains

[0x5] Win32/Chymine.A

[0x6] SpyEye C&C and spreading with Microsoft SpyNet Black Hat Seo technique

[0x7] memory exploiting techniques timeline

[0x8] finally PAIMEI

[0x9] CVE-2010-0806 - Internet Explorer 6/7 0 day

[0xA] Firefox 3.6.x - 0 day for document.write - yet another

The new Security and Penetration Testing Community

A new Information and Penetration Testing Protal for all security and network professionals. The site include a number of whitehat hacking tools and documents like nmap,dsniff,etterkap,yersinia,cisco security.

[0x1] Honeypot

[0x2] The Conflicker Worm

[0x3] Thoughts on Security of the Corporate documents

[0x4] Are Security Audits necessary ?

[0x5] RFID, its implications and how to defeat

[0x6] Assesing Risks

[0x7] FBI Raids: Pertinent or Paranoid?

[0x8] Protecting Children Online

[0x9] Sarbanes Oxley and IT

[0xA] Phishing For Your Identity

Liquidmatrix Security Digest

Bringing Fire To The Village: Your Source For Computer, Network & Information Security News from Dave Lewis, Security Blogger

[0x1] Security Briefing: September 2nd

[0x2] After BlackBerry, India Now Wants Access to Google, Skype, etc

[0x3] Security Briefing: September 1st

[0x4] Google Scares Priority Inbox Customers With ‘Virus’

[0x5] Russian Police Bust Hacker Gang

[0x6] Wireshark 1.4.0 Released

[0x7] Security Briefing: August 31st

[0x8] PayPal Claims They Were Not Breached

[0x9] Security Briefing: August 30th

[0xA] Indian Voting Machine Hacker Released

CSOONLINE.com - Data Privacy

[0x1] 3 areas where FUD needs to stop

[0x2] Sticks and stones: Picking on users AND security pros

[0x3] Auto finance company scopes GPS tracking

[0x4] ACH fraud: Why criminals love this con

[0x5] Facebook 'dislike' button scam spreads virally

[0x6] Court rejects warrantless GPS tracking

[0x7] What it's like to be grilled by the Secret Service

[0x8] ID theft hits Georgia businesses

[0x9] Social networks leak your information, study says

[0xA] What is Your Facebook Data Worth?

Microsoft Security Bulletins

Microsoft Security Bulletins

[0x1] MS10-060 - Critical: Vulnerabilities in the Microsoft .NET Common Language Runtime and in Microsoft Silverlight Could Allow Remote Code Execution (2265906)

[0x2] MS10-059 - Important: Vulnerabilities in the Tracing Feature for Services Could Allow Elevation of Privilege (982799)

[0x3] MS10-058 - Important: Vulnerabilities in TCP/IP Could Allow Elevation of Privilege (978886)

[0x4] MS10-057 - Important: Vulnerability in Microsoft Office Excel Could Allow Remote Code Execution (2269707)

[0x5] MS10-056 - Critical: Vulnerabilities in Microsoft Office Word Could Allow Remote Code Execution (2269638)

[0x6] MS10-055 - Critical: Vulnerability in Cinepak Codec Could Allow Remote Code Execution (982665)

[0x7] MS10-054 - Critical: Vulnerabilities in SMB Server Could Allow Remote Code Execution (982214)

[0x8] MS10-053 - Critical: Cumulative Security Update for Internet Explorer (2183461)

[0x9] MS10-052 - Critical: Vulnerability in Microsoft MPEG Layer-3 Codecs Could Allow Remote Code Execution (2115168)

[0xA] MS10-051 - Critical: Vulnerability in Microsoft XML Core Services Could Allow Remote Code Execution (2079403)

The RISKS Forum

Peter G. Neumann moderates this regular digest of current events which demonstrate risks to the public in computers and related systems. Security risks are often discussed.

[0x1] Risks Digest 26.14

[0x2] Risks Digest 26.13

[0x3] Risks Digest 26.12

[0x4] Risks Digest 26.11

[0x5] Risks Digest 26.10

[0x6] Risks Digest 26.09

[0x7] Risks Digest 26.08

[0x8] Risks Digest 26.07

[0x9] Risks Digest 26.06

[0xA] Risks Digest 26.05

evilrouters.net

im in ur datacentrz configurin' ur routerz

[0x1] Ohio LinuxFest 2010

[0x2] Installing pfSense on a Nokia IP120 firewall

[0x3] ProCurve 5406zl Issue Rears Its Head Again

[0x4] HP Networking Tech Day – Part 3

[0x5] HP Networking Tech Day – Part 2

[0x6] HP Networking Tech Day – Part 1

[0x7] HP Networking Tech Day: A Quick Review

[0x8] HP Networking Tech Day is here

[0x9] Free CCNP TSHOOT Webcast

[0xA] HP H3C Products Warranty Information

CSOONLINE.com - Loss Prevention

[0x1] The essential retail security reader

[0x2] Artful security: Design elements that ensure security, but also emphasize style

[0x3] Social engineering stories: The sequel

[0x4] 5 top tactics in retail theft today

[0x5] Financial fraud: How investigators work to combat data theft

[0x6] Investigative Tactics and Strategies

[0x7] Social Engineering: The Basics

[0x8] Supply Chain Security Threats: 5 Game-Changing Forces

[0x9] DHS: Counterfeit Goods Still Rampant in U.S.

[0xA] Checklist: 11 Security Tips for Black Friday, Cyber Monday

Anton Chuvakin Blog - "Security Warrior"

LogChat: Andrew Hay and Anton Chuvakin talk about logging, log management and related topics

[0x1] Monthly Blog Round-Up – August 2010

[0x2] LogChat Podcast 1: Anton Chuvakin and Andrew Hay Talk Logs

[0x3] Fun Project Honeynet Log Challenge: Log Mysteries

[0x4] Another Fun SIEM Whitepaper

[0x5] Links for 2010-08-30 [del.icio.us]

[0x6] CEE Architecture Overview FINALLY Out!

[0x7] To Those Escaping from Sinking SIEM/Log Management Vendors

[0x8] Silly Compliance Poll

[0x9] CEE Update – Aug 2010

[0xA] Log Math

NoScript Updates

Recent stable releases from noscript.net

[0x1] NoScript 2.0.2.5

[0x2] NoScript 2.0.2.4

[0x3] NoScript 2.0.2.3

[0x4] NoScript 2.0.2.2

[0x5] NoScript 2.0.2.1

[0x6] NoScript 2.0.2

[0x7] NoScript 2.0.1

[0x8] NoScript 2.0

[0x9] NoScript 1.10

[0xA] NoScript 1.9.9.99

ZDI: Recent Press

Recent Press Hits

[0x1] How Microsoft ranks with the most tardy bug fixers

[0x2] HP TippingPoint gives deadline to vendors

[0x3] TippingPoint sets six-month deadline for flaw fixes

[0x4] HP's Zero Day Initiative Gives Vendors Patching Deadline

[0x5] Researchers Throw Down Vulnerability-Disclosure Gauntlet

[0x6] TippingPoint gives vendors six months to fix holes

[0x7] New vulnerability disclosure deadline puts pressure on tardy software vendors

[0x8] ZDI bug bounty program imposes fix deadline for vendors

[0x9] TippingPoint Zero Day Initiative to push patch deadline on vendors

[0xA] HP Changes TippingPoint ZDI Disclosure Policy

Packet Storm Security Tools

Packet Storm Last 10 Tools

[0x1] suricata-1.0.2.tar.gz

[0x2] cvechecker-0.5.tar.gz

[0x3] voidssh.tar.gz

[0x4] auditx.tgz

[0x5] openssh-5.6p1.tar.gz

[0x6] fwbuilder-4.1.1.tar.gz

[0x7] winappdbg-1.4.tar.bz2

[0x8] athena-ssl-cipher-check_v052.tar.gz

[0x9] ddpwn.tar.gz

[0xA] peludo-cachicamo-v1.0.0.tar.gz

Splunk Blogs

[0x1] Event Correlation

[0x2] What’s New on Splunkbase? PCI, Nagios, and Mapping Galore!

[0x3] SplunkTalk – #12 – Double rainbow all the way across the podcast

[0x4] SplunkTalk – #11 – The boys are back in town!

[0x5] Another day, another Splunk Answers milestone

[0x6] VIDEO: Search Tips & Tricks for Windows Users

[0x7] Can’t wait for the next .conf!

[0x8] SplunkTalk – #10 – The Perfect Decimal – Live from Splunk User.Conf 2010

[0x9] How to use Notifo to receive Splunk alerts on your iPhone

[0xA] Splunk is a Verb – Splunking Perforce Data (Part 2)

LinuxSecurity.com: OpenBSD Advisories

The central voice for Linux and Open Source security news.

[0x1] Study: Spammers use e-mail ID to gain legitimacy

[0x2] Review: The Official Ubuntu Book

[0x3] OpenBSD: kernel heap overflow in IPsec

[0x4] OpenBSD: login_radius security flaw

[0x5] OpenBSD: Xpm security fix

[0x6] OpenBSD: zlib reliabilty fix

[0x7] OpenBSD: cvs Multiple vulnerabilities

[0x8] OpenBSD: cvs Heap overflow vulnerability

[0x9] OpenBSD: procfs Incorrect bounds checking vulnerability

[0xA] OpenBSD: cvs Pathname validation vulnerabilities

Layer 7 Technologies

Layer 7 Technologies markets a family of XML appliances and software to secure, simplify and scale Web services.

[0x1] New Article - Layer 7 Expands into Dutch Market with ION-IP Partnership - ChannelWeb

[0x2] New Press Release - Working Opportunity Fund makes follow on investment in Layer 7 Technologies (February 2, 2009)

[0x3] New Award - 2009 Ready to Rocket List - Rocketbuilders

[0x4] Watch VP Marketing & Alliances, Dimitri Sirota, interviewed by Sys-Con.TV at JavaOne Conference in June, 2008.

[0x5] New Press Release - SOA Consortium Releases New Podcast from K. Scott Morrison, Layer 7 Technologies, on How to Fail at SOA (August 18, 2008)

[0x6] New Press Release - Layer 7 Joins SOA Consortium as Silver Sponsor (June 30, 2008)

[0x7] New Article - Layer 7 Nominated for SYS-CON's "SOA World Magazine Readers' Choice Awards": The SecureSpan XML Networking Gateway Nominated for "Best Security Solution" - SOA World

[0x8] New Press Release - Layer 7 Technologies Enhances Field Collaboration for SOA Through HP ISV Marketplace Referral Program (June 18, 2008)

[0x9] New Article - Layer 7 to Provide Security and Operational Governance for Sun Java CAPS - eBizQ

[0xA] New Press Release - Layer 7 Technologies to Provide Security and Operational Governance for Sun Java CAPS (June 9, 2008)

BankInfoSecurity.com "The Agency Insider" Blog RSS Syndication

BankInfoSecurity.com.com RSS Feeds for The Agency Insider blog.

[0x1] Be Mindful of Insider Fraud Against Seniors

[0x2] Reports Showcase Security Gap

[0x3] Spreadsheets Still Subject to Fraud Target

[0x4] Minn. Cracks Down on Skimming

[0x5] First Step Toward Cleaning up Mortgage Mess

[0x6] A Tale of Three Breach Reports

[0x7] Heartland Heads to the Finish Line

[0x8] Goldman Sachs Settlement Signals Start of Crackdown

[0x9] Regulatory 'Reform' is Prelude to Next Crisis

[0xA] How Many Strikes Before a Risky Employee is Out?

Network-7

Recruiting for The Cyberwar

[0x1] Skype Vulnerability Discovered/Patched

[0x2] Whitepages.com and Drudge Report/Senate Security Issues

[0x3] Cloud Computing Dependent on Security

[0x4] Geospatial Potential Killer App

[0x5] IBM and U.S. Air Force to Prove Cloud Computing (Let the Chinese test it)

[0x6] Zero-day vulnerability in IE 6 and 7 (and these with 70% of the browser mkt)

[0x7] U.S. would lose a cyber war, former intell chief warns

[0x8] The human element complicates cybersecurity

[0x9] Certifications Are No Longer Optional

[0xA] 6 security trends to watch in 2010

Hackyourself.net Information Security Blog

Hack Yourself...before someone else does!

[0x1] Where are the DBAs?

[0x2] Some Free Web App Security Testing Tools & Resources

[0x3] CWE Top 25 Breakdown – Part 3 of 4

[0x4] CWE Top 25 Breakdown – Part 2 of 4

[0x5] CWE Top 25 Breakdown – Part 1 of 4

[0x6] Should I be worried about my web applications?

[0x7] Does PCI Compliance Work?

[0x8] Top 10 Issues Observed During Pen Tests in 2008

[0x9] A PHP Framework Worth Looking Into

[0xA] OSI is Dead

Zone-H.org Defacements

Latest defacements published by Zone-H.org

[0x1] http://wordpress.digitalpulley.com/wordpress/

[0x2] http://xn--hgblfc7j2ap.com

[0x3] http://angelakeaton.com

[0x4] http://anomalyinstitute.com

[0x5] http://anomalynews.com

[0x6] http://excludedmiddle.com

[0x7] http://austinanomaly.com

[0x8] http://anomalyradio.com

[0x9] http://anomalyaudio.net

[0xA] http://anomalyaudiobooks.com

InformationWeek - All Stories And Blogs

InformationWeek

[0x1] Nationwide Taps 'Citizen Developers' For Faster Apps

[0x2] End User 2.0: When Employees Have All The Answers

[0x3] CIO Profiles: Girish Varma Of Qwest Communications

[0x4] 9 Steps To Enabling Remote Access, Safely

[0x5] Practical Analysis: The Great Laboratory Of Departments

[0x6] Looking For A Password? Look Under A Keyboard

[0x7] Verizon Offers No-Contract Services, Website Kits

[0x8] Pricing Could Determine Samsung Galaxy Tab's Fate

[0x9] Squadhelp: Helping Small Businesses Tap The Crowd

[0xA] InformationWeek's RSS Feed is brought to you by

XSSed syndication

You are welcome to syndicate and share xssed.com contents

[0x1] Critical Facebook XSS bugs could be used to hijack accounts

[0x2] Just another persistent Twitter XSS

[0x3] YouTube persistent XSS vulnerability

[0x4] Persistent XSS vulnerability affecting Twitter promptly corrected

[0x5] National Security Agency (NSA) SSL web page XSSed

[0x6] Norton Update Center critical XSS vulnerability

[0x7] BP website again defaced via XSS to protest against oil spill

[0x8] F-Secure.com vulnerable to cross-site scripting

[0x9] Is IronPort.com capable of delivering exploits through cross-site scripting?

[0xA] BP.com defaced with XSS to show Gulf of Mexico oil spill protesters

Twitter / ubuntu_security

Twitter updates from ubuntu_security / ubuntu_security.

[0x1] ubuntu_security: [USN-810-1] NSS vulnerabilities

[0x2] ubuntu_security: [USN-817-1] Thunderbird vulnerabilities

[0x3] ubuntu_security: [USN-813-2] Apache vulnerability

[0x4] ubuntu_security: [USN-824-1] PHP vulnerability

[0x5] ubuntu_security: [USN-816-1] fetchmail vulnerability

[0x6] ubuntu_security: [USN-810-1] NSS vulnerabilities

[0x7] ubuntu_security: [USN-817-1] Thunderbird vulnerabilities

[0x8] ubuntu_security: [USN-813-2] Apache vulnerability

[0x9] ubuntu_security: [USN-824-1] PHP vulnerability

[0xA] ubuntu_security: [USN-816-1] fetchmail vulnerability

US-CERT Cyber Security Alerts

US-CERT Cyber Security Alerts provide timely information about current security issues, vulnerabilities, and exploits. Cyber Security Alerts are released in conjunction with Technical Cyber Security Alerts when there is an issue that affects the general public. Cyber Security Alerts outline the steps and actions that non-technical home and corporate computer users can take to protect themselves from attack.

[0x1] SA10-231A: Adobe Reader and Acrobat Vulnerabilities

[0x2] SA10-224A: Apple Updates iOS for Multiple Vulnerabilities

[0x3] SA10-223A: Adobe Flash and AIR Vulnerabilities

[0x4] SA10-222A: Microsoft Updates for Multiple Vulnerabilities

[0x5] SA10-194A: Microsoft Updates for Multiple Vulnerabilities

[0x6] SA10-162A: Adobe Flash and AIR Vulnerabilities

[0x7] SA10-159B: Microsoft Updates for Multiple Vulnerabilities

[0x8] SA10-159A: Adobe Flash, Reader, and Acrobat Vulnerability

[0x9] SA10-131A: Microsoft Updates for Multiple Vulnerabilities

[0xA] SA10-103C: Adobe Reader and Acrobat Vulnerabilities

Zscaler Research

The Zscaler Research Team is focused on bleeding edge web security research in the cloud computing era. This blog provides an opportunity for us to share our thoughts and ideas and interact with the community at-large. We welcome your feedback and encourage you to join the dialogue.

[0x1] New PPI Campaign

[0x2] Google Code hosting website used to spread malware again

[0x3] Corporate Espionage for Dummies: HP Scanners

[0x4] Beaconing Leads to Swarft Trojan & Suspicious Netblock

[0x5] How many malicious "Hot Video" pages does Google show?

[0x6] Help Contribute to the Cloud Security Alliance 'Top Threats' v2.0

[0x7] 66.220.17.200 A Haven For Swizzor

[0x8] Nearly 3 million "Hot Video" pages pushing fake AV are undetected

[0x9] A week of Research

[0xA] Union Public Service Commission website of India Compromised

US-CERT Cyber Security Bulletins

US-CERT Cyber Security Bulletins provide bi-weekly summaries of security issues and new vulnerabilities. They also provide patches, workarounds, and other actions to help mitigate risk.

[0x1] SB10-242: Vulnerability Summary for the Week of August 23, 2010

[0x2] SB10-235: Vulnerability Summary for the Week of August 16, 2010

[0x3] SB10-228: Vulnerability Summary for the Week of August 9, 2010

[0x4] SB10-221: Vulnerability Summary for the Week of August 2, 2010

[0x5] SB10-214: Vulnerability Summary for the Week of July 26, 2010

[0x6] SB10-207: Vulnerability Summary for the Week of July 19, 2010

[0x7] SB10-200: Vulnerability Summary for the Week of July 12, 2010

[0x8] SB10-193: Vulnerability Summary for the Week of July 5, 2010

[0x9] SB10-186: Vulnerability Summary for the Week of June 28, 2010

[0xA] SB10-179: Vulnerability Summary for the Week of June 21, 2010

Honeypots

Discussions about tracking attackers by setting up decoy honeypots or entire honeynet networks.

[0x1] nullcon Goa dwitiya (2.0) Call For Papers

[0x2] [HITB-Announce] HITB2010 SIGNINT Sessions

[0x3] Re: honeypot needed for waf testing

[0x4] honeypot needed for waf testing

[0x5] Ruxcon 2010 Final Call For Papers

[0x6] [HITB-Ann] Reminder: HITB2010 Malaysia Call for Papers Closing August 9th

[0x7] [HITB-Announce] HITB Magazine Issue 003 + HITBSecConf2010 - Amsterdam

[0x8] CFP: Deadline Extended: SLAML'10

[0x9] [HITB-Announce] HITBSecConf2010 - Malaysia Call for Papers

[0xA] RE: info reg Zeus bot detection and analysis

HSC Security Portal

Hackers Center Security Portal is one of the most complete, updated and visited Securty portals on the net. We offer Security Blogs, Exploits, Texts, Tools

[0x1] Scrubyt 0.4

[0x2] Sahi V3

[0x3] UrlParams 2.2.0

[0x4] TemperIE

[0x5] Nikto 2

[0x6] hcraft 1.0.0

[0x7] MSNPawn 1.1

[0x8] httprint

[0x9] DIRB

[0xA] WebInject 1.4

Mu Dynamics Research Labs

[0x1] MuSL - Interactive Application Protocol Fuzzing Playground

[0x2] Scale Testing Outlook Web Access with Mu Studio

[0x3] MuSL for Application Protocol Fuzzing and Scale Testing - Introduction

[0x4] Evolution of Testing (redux)

[0x5] Testing an Application, Infrastructure and a Service

[0x6] Testing HTML5 Applications

[0x7] Application Fuzzing with Mu Studio

[0x8] Solving Ann’s Aurora Forensics Contest with xtractr

[0x9] Functional and Fuzz Testing Proxies and Load-Balancers

[0xA] Don’t use dumb packet-replay to test modern firewalls

Paranoia, Insecurity, and Overall Anxiety

I decided to create this blog to share information with those readers who are interested in some of the topics addressed. These topics will primarily be information security focused, but don't be surprised if I throw in a conspiracy theory or two from time to time.

[0x1] PA School Activates Spycam on Laptop

[0x2] Spyware for Your Blackberry

[0x3] Don't Forget Iron Man

[0x4] Pursuit Robots

[0x5] I Have Returned

[0x6] Ubiquitous Computing - I Don't Like IT!

[0x7] A Little Satire

[0x8] Bundled Facial Recognition Software on New Laptops

[0x9] I Have Been Slipping!

[0xA] Unleash the Cracken aka DARPA

InformationWeek Security News

InformationWeek

[0x1] 9 Steps To Enabling Remote Access, Safely

[0x2] Virginia May Lose Data From Outage

[0x3] Feds Issue Smart Grid Cybersecurity Guidelines

[0x4] InformationWeek's RSS Feed is brought to you by

[0x5] Facebook Ups Security With Remote Log Out

[0x6] Inventors Demo Ubiquitous, Hands Free Interfaces

[0x7] Global CIO: IBM-Google Security Snafu Shows #1 Vulnerability Is Ignorance

[0x8] Verizon Announces Prepaid Data Plans For Smartphones

[0x9] DARPA Soliciting Bids On Insider Threat Prevention

[0xA] Metal Manufacture Breakthrough Promises Transformer Objects

Crypto-Gram Security Podcast

Security: Bruce Schneier's monthly Crypto-Gram Newsletter (read by Dan Henage)

[0x1] Crypto-Gram 15 Jun 2010

[0x2] Crypto-Gram 15 May 2010

[0x3] Crypto-Gram 15 Apr 2010

[0x4] Crypto-Gram 15 Mar 2010

[0x5] Crypto-Gram 15 Feb 2010

[0x6] Crypto-Gram 15 Jan 2010

[0x7] Crypto-Gram 15 Dec 2009

[0x8] Crypto-Gram 15 Nov 2009

[0x9] Crypto-Gram 15 Oct 2009

[0xA] Crypto-Gram 15 Sep 2009

Google Online Security Blog

The latest news and insights from Google on security and safety on the Internet.

[0x1] Vulnerability trends: how are companies really doing?

[0x2] Rebooting Responsible Disclosure: a focus on protecting end users

[0x3] Extending SSL to Google search

[0x4] Do Know Evil: web application vulnerabilities

[0x5] The Rise of Fake Anti-Virus

[0x6] The chilling effects of malware

[0x7] Phishing phree

[0x8] Detecting suspicious account activity

[0x9] Meet skipfish, our automated web security scanner

[0xA] Federal Support for Federated Login

Abysssec Security Research

Security Researches , Advisories , Coding , Projects , Reversing , Exploitation , Fuzzing

[0x1] MOAUB – Day by Day

[0x2] Month of Abysssec Undisclosed bugs coming !

[0x3] Past, Present, Future of Windows Exploitation

[0x4] Ken Ward Zipper Stack BOF 0day – a not so typical SEH exploit

[0x5] Additional notes in PHP source code auditing

[0x6] Immunity Debugger PeDetect and the art of signature generation

[0x7] Exploiting Vista / 2008 Using SMBV2 Exploit

[0x8] writing a Browser fuzzer !!!

[0x9] Microsft Directshow and MPEG-2 Exploitation

[0xA] webapp Advisory + not dead just busy !!!

ZeroDay Labs blog

Application security testing, analysis, and metrics

[0x1] Deadly Combo: Zero Day Application Vulnerability + OS Vulnerability = Attacker Win

[0x2] Website Vulnerability Research and Disclosure

[0x3] Which Tastes Better for Security, Java or .NET?

[0x4] HTML5 Security in a Nutshell

[0x5] MC Frontalot Releases “Zero Day”

[0x6] Malicious Mobile Code Meets Exploit Selling

[0x7] Veracode at RSA 2010

[0x8] Mobile Malware Counterpoints

[0x9] In Which We Dispel Misconceptions

[0xA] Is Your BlackBerry App Spying on You?

/dev/one

Suricata, OISF, Security Information Management, Security related tools..

[0x1] HowTo setup suricata 1.0.0 on Mac OS X on IDS and IPS mode with IPFW

[0x2] New suricata release 0.8.2

[0x3] Improved version of pcap2rawc

[0x4] Rule2Alert

[0x5] I must feel lucky...

[0x6] Ante la inclusión en el Anteproyecto de Ley de Economía Sostenible

[0x7] Profiling with shark on Mac OS X - Snow Leopard

[0x8] pcap2rawc.py

[0x9] Snort ( 2.8.* < 2.8.5stable) Unified1 output bug

[0xA] another birthday present

OVAL News

OVAL news headlines for the latest compatible products, data and schema updates, upcoming conferences, new Web site features, OVAL in the news, etc.

[0x1] OVAL Version 5.8 in Release Candidate Stage

[0x2] OVAL Included as Topic at IT Security Automation Conference 2010, September 27-29

[0x3] New OVAL Board Member

[0x4] Debian Project Now Listed on "Other Repositories" Page

[0x5] Draft 6 of OVAL Version 5.8 Now Available

[0x6] OVAL Version 5.8 to Be Released on September 15, 2010

[0x7] OVAL Interpreter Updated to Version 5.7.2

[0x8] OVAL/Making Security Measurable Booth at Black Hat Briefings 2010

[0x9] Draft 5 of OVAL Version 5.8 Now Available

[0xA] Draft 4 of OVAL Version 5.8 Now Available

Essential Computer Security

Computer Security In Plain English For Normal People

[0x1] How to Avoid Rogue Security Software

[0x2] What’s a Rogue – And Why Do You Need to Know?

[0x3] Top 10 Ways Computer Security Will Improve in 2010 (Not!)

[0x4] The Year in Malware–A 2009 Review

[0x5] Taking Steps to Protect the Network on Cyber Monday

[0x6] November 2009

[0x7] White Paper: Panda Cloud Protection

[0x8] Facebook and Twitter Phishing Attacks

[0x9] Become a Fan, Win a 1Tb ioSafe Drive

[0xA] Record-Setting Patch Tuesday from Microsoft and Adobe

National Vulnerability Database

This feed contains the most recent fully analyzed CVE cyber vulnerabilities published within the National Vulnerability Database.

[0x1] CVE-2010-3197 (db2)

[0x2] CVE-2010-3196 (db2)

[0x3] CVE-2010-3195 (db2)

[0x4] CVE-2010-3194 (db2)

[0x5] CVE-2010-3193 (db2)

[0x6] CVE-2010-2365 (moobbs2)

[0x7] CVE-2010-2364 (moobbs)

[0x8] CVE-2010-3191 (captivate)

[0x9] CVE-2010-3190 (visual_studio)

[0xA] CVE-2010-3189 (internet_security)

Wilders Security Forums

This is a Computer Security discussion forum.

[0x1] Looking for a free dialer that can limit connection speed

[0x2] Trend Micro September 3, 2010

[0x3] TrojanHunter ruleset update Sep 3, 2010

[0x4] PDF-XChange Viewer DLL Loading Vulnerability

[0x5] Would any distro allow Hulu streaming with these specs? It's a <2lbs mini-netbook

[0x6] avira personal 10 question

[0x7] how to uninstall online armor TLEM network service

[0x8] Google Trims Privacy Policy

[0x9] Why so many integrity errors?

[0xA] Older versions of Returnil

CSOONLINE.com - Disaster Recovery

[0x1] What the Gulf Oil Spill can teach CIOs about disasters

[0x2] Business continuity, not data breaches, a top concern for tech firms

[0x3] Super Duper Tabletop Disaster Scenarios

[0x4] People, Groups Flock to the Web After Chile Earthquake

[0x5] Massive Storms Don't Halt D.C. IT Ops

[0x6] DDoS Returns: What Researchers Are Learning About Targets, Tactics

[0x7] Disaster in Haiti: Advice for Employees and Operations on the Ground

[0x8] Chemical Spill Response: How Dow is Training Small Town America to Handle Hazmat Emergencies

[0x9] Business Continuity and Disaster Recovery in a Tornado Zone

[0xA] Symantec: Disaster Recovery Pressures Mount for Business

PandaLabs Blog

Everything you need to know about Internet threats

[0x1] We are good at finding names

[0x2] Chilean miners tragedy used to distribute malware

[0x3] Mariposa: the Slovenian story

[0x4] How to Get Hacked on Facebook

[0x5] Rogueware on the roll

[0x6] Facebook clickjackers target victims using McDonald’s as bait

[0x7] Blackhat SEO Attack Targeting Halloween and Thanksgiving

[0x8] Moshi Monster under attack

[0x9] Clickjacking Attack Targeting Shark Week

[0xA] Chelsea Clinton BlackHat SEO attack

CSOONLINE.com - Strategic Planning/ERM

[0x1] Security metric techniques: How to answer the 'so what?'

[0x2] Former PA CISO: National cybersecurity bill won't work

[0x3] Inside Oracle's security assurance program

[0x4] Measuring the health of corporate security

[0x5] SaaS, Security and the Cloud: It's All About the Contract

[0x6] Security Consultants and Lawyers: Don't Trust Them to Manage Risks

[0x7] CIO Exec Council: How to Turn IT Staff Into Business Participants

[0x8] CIO Exec Council: IT Shops Gear Up for Greater Success

[0x9] The Myth of Convergence

[0xA] Minimize Risk by Maximizing Accountability

Executive Spotlight Podcasts

Listen online, download to your computer, or subscribe and get the latest information automatically.

[0x1] Executive Spotlight Podcast: ECI Telecom Part 1

[0x2] Executive Spotlight Podcast: Beth Israel Deaconess Medical Center

[0x3] Executive Spotlight Podcast: Daughters of Charity Health System

[0x4] Executive Spotlight Podcast: Presbyterian Health

[0x5] Executive Spotlight Podcast: Lone Star College System

[0x6] Executive Spotlight Podcast: Robert Half International

[0x7] Executive Spotlight Podcast: ECI Telecom

[0x8] Executive Spotlight Podcast: beCogent

[0x9] Executive Spotlight Podcast: Mark Bregman, CTO at Symantec

[0xA] Executive Spotlight Podcast: Avago Technologies

Latest Alerts From Websense Security Labs

This is the Alert Rss Feed from Websense Security Labs

[0x1] None: Please update your RSS readers and bookmarks, the Security Labs blog has moved!

[0x2] Malicious Web Site / Malicious Code: New Zbot campaign comes in a PDF

[0x3] Malicious Web Site / Malicious Code: Fake Apple App Store Malicious Spam

[0x4] Malicious Web Site / Malicious Code: Skype Toolbar for Outlook Scam

[0x5] Malicious Web Site / Malicious Code: Searching for Corey Haim Leads to Rogue AV

[0x6] Malicious Web Site / Malicious Code: BBS of Sougou Compromised

[0x7] Malicious Web Site / Malicious Code: Blackhat SEO turns to PDF with Chile and Hawaii disasters

[0x8] Malicious Web Site / Malicious Code: Searching For Joannie Rochette Leads To Rogue AV

[0x9] Malicious Web Site / Malicious Code: Bloom Box Black SEO

[0xA] Malicious Web Site / Malicious Code: Microsoft's Ninemsn Australia Web Site Compromised

The most recent News from Incisive Media

The most recent News from Incisive Media (Generated on Saturday 4 September 2010 at 06:31:21)

[0x1] Google’s Wave lives on as ‘Wave in a box’

[0x2] A week in security: Twitter and Facebook boost defences

[0x3] Google faces government investigation over search rankings

[0x4] AOL extends deal with Google

[0x5] Google updates privacy policies

[0x6] Twitter logs big jump in mobile usage

[0x7] IT admin jailed for selling spy secrets

[0x8] Google Chrome marks two-year anniversary

[0x9] Exclusive: WWF issues call for green business game-changers

[0xA] Gordon Brown joins World Wide Web board

Reformed(?) Hacker

[0x1] P != NP

[0x2] Lessons learned from a vendor

[0x3] Wiki tab sweep

[0x4] Graph processing

[0x5] Tab Sweep: Search

[0x6] Identifier Tab Sweep

[0x7] When two people know less than one

[0x8] Typical scaling progression for a large website

[0x9] Scalr

[0xA] Standalone, Java implementation of Bloom Filters

Linux Exposed

The Linux Security and hacking Resource

[0x1] Using IPC -- pipes

[0x2] Hosted Exchange and Hosted Sharepoint

[0x3] Inspecting HTTP

[0x4] Windows Hacking and Windows Security Site

[0x5] Cracking WPA and WPA2 passwords

[0x6] Ilegal SEO techniques

[0x7] Torrents and SSH Tunnels

[0x8] Preventing Accidental Denial of Service

[0x9] Enhance Security with Port Knocking

[0xA] Analyzing Malicious SSH Login Attempts

SriniCenthala

Welcome ! You come to the right place for datawarehouse , Business Intelligence BI , Extraction Transformation and Loading ETL Process , Decision Support System (DSS) and OLTP System Design , Data Modeler , Data Architect who has extensive experience in building Very Large Systems. Project Management process PMI Process and PMP Certification. Provide help to any one who wants to know about PMO Office setup & also handling any IT Projects.

[0x1] Study in India: www.eduhelp.in

[0x2] Stay Agile & Succeed - Pairworks - Agile Project Management Tool On-Demand

[0x3] PureApp.com - Monitor & Control Continues Integration On-Demand

[0x4] "There are times brick hits your head!"..."Do not lose your faith on what you love to do!"

[0x5] Agile Project Management Tool - www.PairWorks.com

[0x6] Planning for "eServicePlace LinkedIn Application"

[0x7] New Launch of Datamartist

[0x8] eServicePlace.com How it works

[0x9] New Services Market Place , so What for you?

[0xA] Selecting an Engineering college that matches your marks / cut off made easy! How?

FaberBrent Security Blog

Security risk resilience TSCM debugging security news corporate espionage counter surveillance covert investigations counter terrorism ITSEC Bug sweeping

[0x1] The birth of the mobile phone and PCI payment

[0x2] Nearly half of Brits use the same password for all accounts

[0x3] $27 billion lawsuit could fold due to $50 covert surveillance device

[0x4] Shocking - The DWP do not keep records of how many times your data has been abused

[0x5] Met Police report shows CCTV costs £20,000 per single conviction - how many would an extra officer get per year?

[0x6] Charity offices bugged

[0x7] Mobile-phone handset complexity - the criminals friend.

[0x8] The security lessons from Britian's largest jewellery robbery

[0x9] Labour MP and Dutch VIP's suffer website data leaks found by a Google search

[0xA] Black-hatter shows how to utilise memory in Apple keyboard to create a hardware key-logger